导航菜单

页面标题

页面副标题
平台声明

本平台专为移动应用安全风险研究与合规评估设计,严禁用于任何非法用途。 如有疑问或建议,欢迎加入微信群交流

应用基础信息

文件基本信息

文件名称 Baubap Préstamos al instante_3.9.7.apk
文件大小 15.56MB
MD5 14c1a16ef70b053b9ef90f8575d95118
SHA1 d6ce8e7709b734a18b3092ec0b4e4c62ae33dda2
SHA256 bf674b0bbfc6548af40207e084d60b2a01f86e5fd9f8bde4ee06c402604be803
病毒检测 无法判定

应用基础信息

应用名称 Baubap
包名 com.baubap
主活动 com.baubap.presentation.splash.SplashActivity
目标SDK 34
最小SDK 21
版本号 3.9.7
子版本号 20706
加固信息 未加壳
开发框架 Java/Kotlin

Google Play 应用市场信息

标题 Baubap: Préstamos sin Buró
评分 4.7379627
安装 5,000,000+   次下载
价格 0
Android版本支持
分类 财务
Play 商店链接 com.baubap
开发者 Baubap, S.A.P.I. de C.V., SOFOM, ENR
开发者 ID 7811489740606269164
开发者 地址 None
开发者 主页 https://www.baubap.com
开发者 Email [email protected]
发布日期 None
隐私政策 Privacy link

关于此应用
下载 Baubap,快速、安全、轻松地获得贷款。
📲 几分钟内即可申请贷款
您只需要提供手机号码和官方身份证明 (INE)。无需文书工作,无需收据,轻松便捷。
⏰ 全天候 24/7 服务
一年 365 天,随时随地申请贷款。
💵 无需征信机构即可贷款
通过全数字化流程,快速轻松地获得贷款。
✅ 快速、安全、可靠
只需点击几下,即可在当天获得资金,足不出户。
🔒 Baubap:一家受监管的金融机构
我们在 CONDUSEF(美国联邦储备委员会发展委员会)注册,并受 CNBV(委内瑞拉国家银行)监管,确保透明度和可信度。

操作方法有效

从 Play 商店下载 Baubap 应用。
填写申请表并提供您的基本信息。
10 分钟内即可获得答复。
如果您的贷款获得批准,资金将立即转入您的银行账户。


付款方式
💳 电子转账:通过您的手机银行。
💵 现金:在便利店、超市、药店和其他授权地点付款。
请务必在 Baubap 应用中查看您的付款详情。

专属福利:Va de Vuelta计划
🎁 我们将为您提供按时付款的利息奖励:

从您按时偿还的第三笔贷款开始,如果您按时付款,您将获得 10% 的利息。
您可以每 5 笔按时偿还的贷款领取一次奖励。


贷款期限

金额:500 墨西哥比索至 9,000 墨西哥比索。
期限:90 天至 24 个月,具体取决于获批的信贷产品。
最高年利率 (APR):300%; 参考年利率:1355.2%。
代表性示例:

对于一笔 500 墨西哥比索的贷款,您需要在 90 天内支付 934 美元(374 墨西哥比索利息 + 60 墨西哥比索利息增值税),日利率为 0.83%。



隐私和安全政策
🔒 您的数据受我们的隐私声明保护,未经您的同意绝不会共享。请参阅我们的完整政策:隐私政策。

联系我们:
邮箱:[email protected]
聊天:https://soporte.baubap.com
Facebook:https://bap.mx/appBaubap
TikTok:https://www.tiktok.com/@baubap.mx
Instagram:https://www.instagram.com/baubap.mx/
📍 地址:马德里别墅广场 1 号,9 楼 - “F”,Colonia Roma Norte,库奥特莫克市长办公室,C.P. 06700,墨西哥城,墨西哥。
📞 客户服务时间:

周一至周五:上午 9:00 - 下午 7:00。
周六和周日:上午 10:00 - 下午 6:00。


重要提示

所有贷款均需获得信用审批。
第一笔贷款可能需要最多 1 个工作日才能验证。
按时付款可让您在未来的贷款中获得更大的金额和条款。


Baubap:我们信任您。💟

反编译与源码导出

Manifest文件 查看
Java源代码 查看 -- 下载

文件结构与资源列表

    应用签名证书信息

    APK已签名
    v1 签名: True
    v2 签名: True
    v3 签名: True
    v4 签名: False
    主题: C=US, ST=California, L=Mountain View, O=Google Inc., OU=Android, CN=Android
    签名算法: rsassa_pkcs1v15
    有效期自: 2018-06-07 04:41:57+00:00
    有效期至: 2048-06-07 04:41:57+00:00
    发行人: C=US, ST=California, L=Mountain View, O=Google Inc., OU=Android, CN=Android
    序列号: 0xd4a8c09e21086f3d3749cf9987fe70e1c9154109
    哈希算法: sha256
    证书MD5: 1d2db68324e3b08449cf73d06e35179f
    证书SHA1: 5720f67e51c9eadb02ffbe9f30579b1a2fc56624
    证书SHA256: fd956daee22d1c6fd4bedbf83167a70b88ab952de8b630c66b4fdba731044f5f
    证书SHA512: 4e0b6306c8882e79cd16f54b2aa68687dcfd4ceb3e6f62acd767a788f8c80f2dac381f15fe9fc7f59c57a72bf7c6ad82a4aad069fec008317dbc8f8348c04f68
    公钥算法: rsa
    密钥长度: 4096
    指纹: 5ff2b7077577e34fbfbe8187db322ccb3a3264e345e8c695366783007db28320
    共检测到 1 个唯一证书

    证书安全合规分析

    高危
    0
    警告
    1
    信息
    1
    标题 严重程度 描述信息
    已签名应用 信息 应用已使用代码签名证书进行签名。

    权限声明与风险分级

    权限名称 安全等级 权限内容 权限描述 关联代码
    android.permission.VIBRATE 普通 控制振动器 允许应用程序控制振动器,用于消息通知振动功能。
    android.permission.INTERNET 危险 完全互联网访问 允许应用程序创建网络套接字。
    android.permission.READ_PHONE_STATE 危险 读取手机状态和标识 允许应用程序访问设备的手机功能。有此权限的应用程序可确定此手机的号码和序列号,是否正在通话,以及对方的号码等。
    android.permission.RECEIVE_SMS 危险 接收短信 允许应用程序接收短信。 恶意程序会在用户未知的情况下监视或删除。
    android.permission.READ_SMS 危险 读取短信 允许应用程序读取您的手机或 SIM 卡中存储的短信。恶意应用程序可借此读取您的机密信息。
    android.permission.READ_CALENDAR 危险 读取日历活动 允许应用程序读取您手机上存储的所有日历活动。恶意应用程序可借此将您的日历活动发送给其他人。
    android.permission.WRITE_CALENDAR 危险 添加或修改日历活动以及向邀请对象发送电子邮件 允许应用程序添加或更改日历中的活动,这可能会向邀请对象发送电子邮件。恶意应用程序可能会借此清除或修改您的日历活动,或者向邀请对象发送电子邮件。
    android.permission.ACCESS_COARSE_LOCATION 危险 获取粗略位置 通过WiFi或移动基站的方式获取用户粗略的经纬度信息,定位精度大概误差在30~1500米。恶意程序可以用它来确定您的大概位置。
    android.permission.ACCESS_WIFI_STATE 普通 查看Wi-Fi状态 允许应用程序查看有关Wi-Fi状态的信息。
    android.permission.ACCESS_NETWORK_STATE 普通 获取网络状态 允许应用程序查看所有网络的状态。
    com.google.android.gms.permission.AD_ID 普通 应用程序显示广告 此应用程序使用 Google 广告 ID,并且可能会投放广告。
    android.permission.USE_FINGERPRINT 普通 允许使用指纹 此常量在 API 级别 28 中已弃用。应用程序应改为请求USE_BIOMETRIC
    android.permission.USE_BIOMETRIC 普通 使用生物识别 允许应用使用设备支持的生物识别方式。
    android.permission.CAMERA 危险 拍照和录制视频 允许应用程序拍摄照片和视频,且允许应用程序收集相机在任何时候拍到的图像。
    android.permission.ACCESS_MEDIA_LOCATION 危险 获取照片的地址信息 更换头像,聊天图片等图片的地址信息被读取。
    android.permission.POST_NOTIFICATIONS 危险 发送通知的运行时权限 允许应用发布通知,Android 13 引入的新权限。
    android.permission.RECORD_AUDIO 危险 获取录音权限 允许应用程序获取录音权限。
    com.google.android.providers.gsf.permission.READ_GSERVICES 未知 未知权限 来自 android 引用的未知权限。
    com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE 普通 Google 定义的权限 由 Google 定义的自定义权限。
    android.permission.WAKE_LOCK 危险 防止手机休眠 允许应用程序防止手机休眠,在手机屏幕关闭后后台进程仍然运行。
    android.permission.ACCESS_ADSERVICES_ATTRIBUTION 普通 允许应用程序访问广告服务归因 这使应用能够检索与广告归因相关的信息,这些信息可用于有针对性的广告目的。应用程序可以收集有关用户如何与广告互动的数据,例如点击或展示,以衡量广告活动的有效性。
    android.permission.ACCESS_ADSERVICES_AD_ID 普通 允许应用访问设备的广告 ID。 此 ID 是 Google 广告服务提供的唯一、用户可重置的标识符,允许应用出于广告目的跟踪用户行为,同时维护用户隐私。
    com.google.android.c2dm.permission.RECEIVE 普通 接收推送通知 允许应用程序接收来自云的推送通知。
    android.permission.RECEIVE_BOOT_COMPLETED 普通 开机自启 允许应用程序在系统完成启动后即自行启动。这样会延长手机的启动时间,而且如果应用程序一直运行,会降低手机的整体速度。
    android.permission.FOREGROUND_SERVICE 普通 创建前台Service Android 9.0以上允许常规应用程序使用 Service.startForeground,用于podcast播放(推送悬浮播放,锁屏播放)
    com.baubap.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION 未知 未知权限 来自 android 引用的未知权限。

    敏感权限分析

    恶意软件常用权限 11/30
    android.permission.VIBRATE
    android.permission.READ_PHONE_STATE
    android.permission.RECEIVE_SMS
    android.permission.READ_SMS
    android.permission.READ_CALENDAR
    android.permission.WRITE_CALENDAR
    android.permission.ACCESS_COARSE_LOCATION
    android.permission.CAMERA
    android.permission.RECORD_AUDIO
    android.permission.WAKE_LOCK
    android.permission.RECEIVE_BOOT_COMPLETED
    其它常用权限 7/46
    android.permission.INTERNET
    android.permission.ACCESS_WIFI_STATE
    android.permission.ACCESS_NETWORK_STATE
    com.google.android.gms.permission.AD_ID
    com.google.android.finsky.permission.BIND_GET_INSTALL_REFERRER_SERVICE
    com.google.android.c2dm.permission.RECEIVE
    android.permission.FOREGROUND_SERVICE

    恶意软件常用权限 是被已知恶意软件广泛滥用的权限。
    其它常用权限 是已知恶意软件经常滥用的权限。

    Manifest 配置安全分析

    高危
    0
    警告
    21
    信息
    0
    屏蔽
    0
    序号 问题 严重程度 描述信息 操作
    1 应用数据允许备份
    [android:allowBackup=true]
    警告 该标志允许通过 adb 工具备份应用数据。启用 USB 调试的用户可直接复制应用数据,存在数据泄露风险。
    2 Broadcast Receiver (com.baubap.push.NotificationBroadcastReceiver) 未受保护。
    [android:exported=true]
    警告 检测到 Broadcast Receiver 已导出,未受任何权限保护,任意应用均可访问。
    3 Broadcast Receiver (com.baubap.push.BrazeBaubapBroadcastReceiver) 未受保护。
    [android:exported=true]
    警告 检测到 Broadcast Receiver 已导出,未受任何权限保护,任意应用均可访问。
    4 Activity (com.baubap.presentation.sign.verify.ReceiveCodeActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    5 Activity (com.baubap.modules.referrals.ReferralsActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    6 Activity (com.baubap.modules.loan.LoanActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    7 Activity (com.baubap.modules.identity.presentation.IdentityActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    8 Activity (com.baubap.modules.abcd.presentation.AbcdActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    9 Activity (com.baubap.presentation.main.MainActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    10 Broadcast Receiver (com.adjust.sdk.AdjustReferrerReceiver) 受权限保护,但应检查权限保护级别。
    Permission: android.permission.INSTALL_PACKAGES
    [android:exported=true]
    警告 检测到 Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。
    11 Activity (com.baubap.modules.cashback.CashbackDetailActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    12 Activity (com.baubap.modules.cashback.ui.main.CashbackActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    13 Activity (com.baubap.cleanslate.ui.ui.CleanSlateActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    14 Activity (com.google.firebase.auth.internal.GenericIdpActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    15 Activity (com.google.firebase.auth.internal.RecaptchaActivity) 未受保护。
    [android:exported=true]
    警告 检测到 Activity 已导出,未受任何权限保护,任意应用均可访问。
    16 Activity 设置了 TaskAffinity 属性
    (com.braze.push.NotificationTrampolineActivity)
    警告 设置 taskAffinity 后,其他应用可读取发送至该 Activity 的 Intent。为防止敏感信息泄露,建议保持默认 affinity(包名)。
    17 Service (com.google.android.gms.auth.api.signin.RevocationBoundService) 受权限保护,但应检查权限保护级别。
    Permission: com.google.android.gms.auth.api.signin.permission.REVOCATION_NOTIFICATION
    [android:exported=true]
    警告 检测到 Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。
    18 Broadcast Receiver (com.google.firebase.iid.FirebaseInstanceIdReceiver) 受权限保护,但应检查权限保护级别。
    Permission: com.google.android.c2dm.permission.SEND
    [android:exported=true]
    警告 检测到 Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。
    19 Service (androidx.work.impl.background.systemjob.SystemJobService) 受权限保护,但应检查权限保护级别。
    Permission: android.permission.BIND_JOB_SERVICE
    [android:exported=true]
    警告 检测到 Service 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。
    20 Broadcast Receiver (androidx.work.impl.diagnostics.DiagnosticsReceiver) 受权限保护,但应检查权限保护级别。
    Permission: android.permission.DUMP
    [android:exported=true]
    警告 检测到 Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。
    21 Broadcast Receiver (androidx.profileinstaller.ProfileInstallReceiver) 受权限保护,但应检查权限保护级别。
    Permission: android.permission.DUMP
    [android:exported=true]
    警告 检测到 Broadcast Receiver 已导出并受未在本应用定义的权限保护。请在权限定义处核查其保护级别。若为 normal 或 dangerous,恶意应用可申请并与组件交互;若为 signature,仅同证书签名应用可访问。

    可浏览 Activity 组件分析

    ACTIVITY INTENT
    com.baubap.modules.referrals.ReferralsActivity Schemes: http://, https://,
    Hosts: www.baubap.com,
    Paths: /app/invita-y-gana,
    com.baubap.modules.loan.LoanActivity Schemes: http://, https://,
    Hosts: www.baubap.com,
    Paths: /app/microcredito, /app/disbursement, /app/microcredito/datos-de-pago-spei, /app/microcredito/datos-de-pago-oxxo, /app/microcredito/solicitar-extension,
    com.baubap.modules.identity.presentation.IdentityActivity Schemes: http://, https://,
    Hosts: www.baubap.com,
    Paths: /app/kyc,
    com.baubap.modules.abcd.presentation.AbcdActivity Schemes: http://, https://,
    Hosts: www.baubap.com,
    Paths: /app/compra-a-pagos,
    com.baubap.presentation.main.MainActivity Schemes: http://, https://,
    Hosts: www.baubap.com,
    Paths: /app/home, /app/va-de-vuelta, /app/perfil,
    com.baubap.modules.cashback.ui.main.CashbackActivity Schemes: https://,
    Hosts: www.baubap.com,
    Path Prefixes: /app/va-de-vuelta,
    com.baubap.cleanslate.ui.ui.CleanSlateActivity Schemes: https://,
    Hosts: www.baubap.com,
    Path Prefixes: /app/borron,
    com.google.firebase.auth.internal.GenericIdpActivity Schemes: genericidp://,
    Hosts: firebase.auth,
    Paths: /,
    com.google.firebase.auth.internal.RecaptchaActivity Schemes: recaptcha://,
    Hosts: firebase.auth,
    Paths: /,

    网络通信安全风险分析

    序号 范围 严重级别 描述

    API调用分析

    API功能 源码文件
    一般功能-> 文件操作
    a1/f1.java
    a1/s0.java
    a60/b.java
    a7/d1.java
    a7/e.java
    a7/f0.java
    a7/f1.java
    a7/i0.java
    a7/m0.java
    a7/n0.java
    a7/q0.java
    a7/y0.java
    ab/a.java
    ab/i.java
    ab/m.java
    af/o.java
    ah/j.java
    ap/c.java
    ap/e.java
    az/c.java
    az/e.java
    az/h.java
    b0/c.java
    b50/a0.java
    b8/f.java
    bo/app/a6.java
    bo/app/b1.java
    bo/app/b6.java
    bo/app/d6.java
    bo/app/e.java
    bo/app/e1.java
    bo/app/e7.java
    bo/app/g.java
    bo/app/g7.java
    bo/app/i.java
    bo/app/j0.java
    bo/app/k0.java
    bo/app/k5.java
    bo/app/l.java
    bo/app/l0.java
    bo/app/m0.java
    bo/app/m1.java
    bo/app/m5.java
    bo/app/m6.java
    bo/app/o.java
    bo/app/o4.java
    bo/app/p7.java
    bo/app/q4.java
    bo/app/r4.java
    bo/app/r5.java
    bo/app/s1.java
    bo/app/u0.java
    bo/app/u4.java
    bo/app/u6.java
    bo/app/w0.java
    bo/app/w3.java
    bo/app/x1.java
    bo/app/x6.java
    bo/app/y.java
    bo/app/z0.java
    bp/c.java
    bw/g6.java
    bw/h6.java
    bw/i4.java
    bw/i6.java
    bw/k.java
    bw/l4.java
    bw/m4.java
    bw/m7.java
    bw/n4.java
    bw/n7.java
    bw/s5.java
    bw/s7.java
    bx/e.java
    c0/d.java
    c0/m1.java
    c0/s0.java
    c40/c.java
    c40/e.java
    c60/a.java
    c60/e.java
    c8/p.java
    cb/a.java
    cc/a.java
    cc/c.java
    cc/d.java
    ch/p0.java
    com/baubap/data/api/model/CurrentViewResponse.java
    com/baubap/data/api/model/ErrorResponse.java
    com/baubap/data/api/model/Request.java
    com/baubap/data/api/model/Response.java
    com/baubap/data/api/model/StatusResponse.java
    com/baubap/data/api/model/braze/ObtainChangedStandardAttributesResponse.java
    com/baubap/data/api/model/braze/StandardAttributesRequest.java
    com/baubap/data/api/model/loan/DeclineCommentsResponse.java
    com/baubap/data/api/model/loan/DeclineReasonRequest.java
    com/baubap/data/api/model/loan/DeclineReasonsExplanationHackResponse.java
    com/baubap/data/api/model/loan/DeclineReasonsExplanationResponse.java
    com/baubap/data/api/model/loan/DeclinedCommentRequest.java
    com/baubap/data/api/model/loan/DeclinedCommentResponse.java
    com/baubap/data/api/model/loan/DeclinedCommentsHackResponse.java
    com/baubap/data/api/model/loan/DeclinedReasonDetailResponse.java
    com/baubap/data/api/model/loan/DeclinedReasonHackResponse.java
    com/baubap/data/api/model/loan/DeclinedReasonResponse.java
    com/baubap/data/api/model/loan/DeclinedReasonUrlResponse.java
    com/baubap/data/api/model/loan/SaveDeclinedReasonProofDocumentRequest.java
    com/baubap/data/api/model/request/AbcdSurveyRequest.java
    com/baubap/data/api/model/request/AbcdSurveysRequest.java
    com/baubap/data/api/model/request/AcceptLoanRequest.java
    com/baubap/data/api/model/request/AcceptLoanResponse.java
    com/baubap/data/api/model/request/AgreementDataInfoResponse.java
    com/baubap/data/api/model/request/AgreementDataRequest.java
    com/baubap/data/api/model/request/AgreementDataResponse.java
    com/baubap/data/api/model/request/AnalyticEventAbcdRequest.java
    com/baubap/data/api/model/request/AnalyticEventRequest.java
    com/baubap/data/api/model/request/AnalyticInstallationRequest.java
    com/baubap/data/api/model/request/AppVariablesResponse.java
    com/baubap/data/api/model/request/AttendeeRequest.java
    com/baubap/data/api/model/request/AvailableOfferResponse.java
    com/baubap/data/api/model/request/BankResponse.java
    com/baubap/data/api/model/request/BanksResponse.java
    com/baubap/data/api/model/request/BatteryLogRequest.java
    com/baubap/data/api/model/request/BaubapLoansHistoryResponse.java
    com/baubap/data/api/model/request/CalendarEventRequest.java
    com/baubap/data/api/model/request/CreateNewLoanResponse.java
    com/baubap/data/api/model/request/CreditHistoryRequest.java
    com/baubap/data/api/model/request/CurpDTO.java
    com/baubap/data/api/model/request/CurpRequest.java
    com/baubap/data/api/model/request/DeviceAccountRequest.java
    com/baubap/data/api/model/request/DeviceAccountsRequest.java
    com/baubap/data/api/model/request/DeviceRequest.java
    com/baubap/data/api/model/request/DisbursementLogLoanViewResponse.java
    com/baubap/data/api/model/request/DisbursementMethodResponse.java
    com/baubap/data/api/model/request/DisbursementMethodsResponse.java
    com/baubap/data/api/model/request/EducationalMessageResponse.java
    com/baubap/data/api/model/request/EmailVerificationProcessRequest.java
    com/baubap/data/api/model/request/ExtensionTermResponse.java
    com/baubap/data/api/model/request/GetClabeRequest.java
    com/baubap/data/api/model/request/GetClabeResponse.java
    com/baubap/data/api/model/request/GetCurrentUserInfoObjectResponse.java
    com/baubap/data/api/model/request/GetCurrentUserInfoResponse.java
    com/baubap/data/api/model/request/GetExtensionCriteriaResponse.java
    com/baubap/data/api/model/request/GetMsnUrlResponse.java
    com/baubap/data/api/model/request/GetOxxoPayRequest.java
    com/baubap/data/api/model/request/GetOxxoPayResponse.java
    com/baubap/data/api/model/request/IdentityMailVerificationRequest.java
    com/baubap/data/api/model/request/IdentityMailVerificationResponse.java
    com/baubap/data/api/model/request/IdentityVerificationRequest.java
    com/baubap/data/api/model/request/IdentityVerificationResponse.java
    com/baubap/data/api/model/request/InstalledAppRequest.java
    com/baubap/data/api/model/request/InstalledAppsRequest.java
    com/baubap/data/api/model/request/LoanActiveShortObjectResponse.java
    com/baubap/data/api/model/request/LoanActiveShortResponse.java
    com/baubap/data/api/model/request/LoanEvaluationStatusObjectResponse.java
    com/baubap/data/api/model/request/LoanEvaluationStatusResponse.java
    com/baubap/data/api/model/request/LoanInfoRequest.java
    com/baubap/data/api/model/request/LoanViewObjectResponse.java
    com/baubap/data/api/model/request/LoanViewResponse.java
    com/baubap/data/api/model/request/LoanWasPastDueResponse.java
    com/baubap/data/api/model/request/LoginRequest.java
    com/baubap/data/api/model/request/LoginResponse.java
    com/baubap/data/api/model/request/NeighborhoodRequest.java
    com/baubap/data/api/model/request/NeighborhoodResponse.java
    com/baubap/data/api/model/request/NeighborhoodsResponse.java
    com/baubap/data/api/model/request/NetworkInterfaceLogRequest.java
    com/baubap/data/api/model/request/NewLoanResponse.java
    com/baubap/data/api/model/request/PaymentLogLoanViewResponse.java
    com/baubap/data/api/model/request/PersonalAddressRequest.java
    com/baubap/data/api/model/request/PersonalAddressResponse.java
    com/baubap/data/api/model/request/PersonalDataRequest.java
    com/baubap/data/api/model/request/PhoneVerificationProcessRequest.java
    com/baubap/data/api/model/request/PushTokenRequest.java
    com/baubap/data/api/model/request/RequestExtensionRequest.java
    com/baubap/data/api/model/request/SaveDaysLateSurveyRequest.java
    com/baubap/data/api/model/request/SaveDisbursementMethodRequest.java
    com/baubap/data/api/model/request/SaveDisbursementMethodResponse.java
    com/baubap/data/api/model/request/SaveDocumentRequest.java
    com/baubap/data/api/model/request/SaveDocumentResponse.java
    com/baubap/data/api/model/request/SavePermissionsResponse.java
    com/baubap/data/api/model/request/SaveWorkIncomeUpdateAnswerRequest.java
    com/baubap/data/api/model/request/SaveWorkIncomeUpdateRequest.java
    com/baubap/data/api/model/request/SaveWorkIncomeUpdateResponse.java
    com/baubap/data/api/model/request/SetNPSRequest.java
    com/baubap/data/api/model/request/SimRequest.java
    com/baubap/data/api/model/request/SmsLogRequest.java
    com/baubap/data/api/model/request/SmsLogsRequest.java
    com/baubap/data/api/model/request/StateResponse.java
    com/baubap/data/api/model/request/StatesResponse.java
    com/baubap/data/api/model/request/TokenResponse.java
    com/baubap/data/api/model/request/TownshipResponse.java
    com/baubap/data/api/model/request/TownshipsResponse.java
    com/baubap/data/api/model/request/TrustinessRequest.java
    com/baubap/data/api/model/request/TrustinessResponse.java
    com/baubap/data/api/model/request/UpdatePropertyRequest.java
    com/baubap/data/api/model/request/UserGetWorkDataObjectResponse.java
    com/baubap/data/api/model/request/UserGetWorkDataResponse.java
    com/baubap/data/api/model/request/UserInfoObjectResponse.java
    com/baubap/data/api/model/request/UserInfoResponse.java
    com/baubap/data/api/model/request/UserProfileObjectResponse.java
    com/baubap/data/api/model/request/UserProfileResponse.java
    com/baubap/data/api/model/request/UserProfileSettingsResponse.java
    com/baubap/data/api/model/request/UserToAbcdAvailableResponse.java
    com/baubap/data/api/model/request/WorkAddressRequest.java
    com/baubap/data/api/model/request/WorkAddressResponse.java
    com/baubap/data/api/model/request/WorkDataRequest.java
    com/baubap/data/api/model/request/WorkDayRequest.java
    com/baubap/data/api/model/request/WorkHoursRequest.java
    com/baubap/data/api/model/request/ZipcodeRequest.java
    com/baubap/data/api/model/request/ZipcodeResponse.java
    com/baubap/data/api/model/request/fillout/FillOutRequest.java
    com/baubap/data/api/model/sign/AbExpRequest.java
    com/baubap/data/api/model/sign/AvailableVerificationMethodsResponse.java
    com/baubap/data/api/model/sign/ChangePhoneRequest.java
    com/baubap/data/api/model/sign/ChangePhoneResponse.java
    com/baubap/data/api/model/sign/ErrorResponse.java
    com/baubap/data/api/model/sign/GetAvailableVerificationMethodsRequest.java
    com/baubap/data/api/model/sign/NewCurpRequest.java
    com/baubap/data/api/model/sign/NipRequest.java
    com/baubap/data/api/model/sign/NipResponse.java
    com/baubap/data/api/model/sign/ResendSmsResponse.java
    com/baubap/data/api/model/sign/SendVerificationCodeRequest.java
    com/baubap/data/api/model/sign/SignupRequest.java
    com/baubap/data/api/model/sign/SignupResponse.java
    com/baubap/data/api/model/sign/VerifyPhoneRequest.java
    com/baubap/data/api/model/sign/VerifyPhoneResponse.java
    com/baubap/data/api/model/sign/VerifyPhoneVerificationCodeRequest.java
    com/baubap/data/api/model/sign/VerifyVerificationPhoneResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdAcceptOrderRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdAgreementByCodeRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdAmountRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdCancelOrderRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdCreateRefundProcessRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdEditOrderRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdGetPaymentLogRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdGetPaymentLogResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdGetProductByUrlRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdGetProductByUrlResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdListProductsResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdNewAddressRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdNewAddressResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdProcessOrderRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdProductCatalogResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdProductDetail.java
    com/baubap/modules/abcd/data/api/model/AbcdProjectionRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdProjectionResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdRefundOptionListRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdTermsResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdUploadSignatureRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdUploadSignatureResponse.java
    com/baubap/modules/abcd/data/api/model/AbcdZipcodeRequest.java
    com/baubap/modules/abcd/data/api/model/AbcdZipcodeResponse.java
    com/baubap/modules/abcd/data/api/model/EligibleTermsResponse.java
    com/baubap/modules/abcd/data/api/model/ErrorMessage.java
    com/baubap/modules/abcd/data/api/model/OrderResponse.java
    com/baubap/modules/abcd/data/api/model/SearchProductsRequest.java
    com/baubap/modules/abcd/data/api/model/TermResponse.java
    com/baubap/modules/account/recovery/data/api/SendCodeRecoveryRequest.java
    com/baubap/modules/account/recovery/data/api/VerificationCodeRequest.java
    com/baubap/modules/account/recovery/data/api/account/CurrentMethodRequest.java
    com/baubap/modules/account/recovery/data/api/account/TemporaryMethodRequest.java
    com/baubap/modules/account/recovery/data/api/account/TemporaryMethodResponse.java
    com/baubap/modules/account/recovery/data/api/account/kyc/AccountRecoveryIdRequest.java
    com/baubap/modules/account/recovery/data/api/account/kyc/IdentityDTO.java
    com/baubap/modules/account/recovery/data/api/account/kyc/ReviewResponse.java
    com/baubap/modules/account/recovery/data/api/account/kyc/SaveDocumentRequest.java
    com/baubap/modules/account/recovery/data/api/account/kyc/SaveDocumentResponse.java
    com/baubap/modules/account/recovery/data/api/account/kyc/SaveSelfieResponse.java
    com/baubap/modules/account/recovery/data/api/account/kyc/VerificationRequest.java
    com/baubap/modules/auth/two/factor/data/api/OtpRequest.java
    com/baubap/modules/auth/two/factor/data/api/UserHashedResponse.java
    com/baubap/modules/auth/two/factor/data/api/VerifyOtpRequest.java
    com/baubap/modules/cashback/data/api/CashbackObjectResponse.java
    com/baubap/modules/cashback/data/api/CashbackResponse.java
    com/baubap/modules/cashback/data/api/CashbackWithdrawRequest.java
    com/baubap/modules/common/TicketInfoResponse.java
    com/baubap/modules/debtcon/data/api/model/AcceptOrderRequest.java
    com/baubap/modules/debtcon/data/api/model/AgreementDataInfoResponse.java
    com/baubap/modules/debtcon/data/api/model/AgreementDataResponse.java
    com/baubap/modules/debtcon/data/api/model/DebtconEditOrderRequest.java
    com/baubap/modules/debtcon/data/api/model/DebtconPendingOrderRequest.java
    com/baubap/modules/debtcon/data/api/model/DebtconUploadSignatureRequest.java
    com/baubap/modules/debtcon/data/api/model/DebtconUploadSignatureResponse.java
    com/baubap/modules/debtcon/data/api/model/DisbursementsLogResponse.java
    com/baubap/modules/debtcon/data/api/model/EditDebtAmountRequest.java
    com/baubap/modules/debtcon/data/api/model/EditDebtClabeRequest.java
    com/baubap/modules/debtcon/data/api/model/GetDisbursementsLogsResponse.java
    com/baubap/modules/debtcon/data/api/model/GetTermsResponse.java
    com/baubap/modules/debtcon/data/api/model/ILoanGetPaymentLogResponse.java
    com/baubap/modules/debtcon/data/api/model/LoanTermResponse.java
    com/baubap/modules/debtcon/data/api/model/PaymentLogRequest.java
    com/baubap/modules/debtcon/data/api/model/ProjectionResponse.java
    com/baubap/modules/debtcon/data/api/model/PromissoryNoteInfoResponse.java
    com/baubap/modules/debtcon/data/api/model/PromissoryNoteResponse.java
    com/baubap/modules/home/data/api/AlarmResponse.java
    com/baubap/modules/home/data/api/AlarmsResponse.java
    com/baubap/modules/home/data/api/BannerResponse.java
    com/baubap/modules/home/data/api/BannersResponse.java
    com/baubap/modules/home/data/api/CountriesResponse.java
    com/baubap/modules/home/data/api/CountryResponse.java
    com/baubap/modules/home/data/api/CurrentPaymentToReturnResponse.java
    com/baubap/modules/home/data/api/GetBannersRequest.java
    com/baubap/modules/home/data/api/HomeInfoResponse.java
    com/baubap/modules/home/data/api/PaymentExcedentRefundRequest.java
    com/baubap/modules/home/data/api/PaymentExcedentRefundResponse.java
    com/baubap/modules/home/data/api/PaymentExcedentResponse.java
    com/baubap/modules/home/data/api/PaymentToReturnResponse.java
    com/baubap/modules/home/data/api/PaymentsExcedentResponse.java
    com/baubap/modules/home/data/api/ProductResponse.java
    com/baubap/modules/home/data/api/ProductsResponse.java
    com/baubap/modules/home/data/api/PromoResponse.java
    com/baubap/modules/home/data/api/PromotionResponse.java
    com/baubap/modules/home/data/api/ReferralsPromotionResponse.java
    com/baubap/modules/home/data/api/SaveCountryCodeRequest.java
    com/baubap/modules/home/data/api/SaveCurpRequest.java
    com/baubap/modules/home/data/api/SectionsResponse.java
    com/baubap/modules/home/data/api/StpPaymentLogResponse.java
    com/baubap/modules/identity/data/api/model/CameraConfigurationResponse.java
    com/baubap/modules/identity/data/api/model/IdentityCurrentViewResponse.java
    com/baubap/modules/loan/authorized/data/SaveUserLoanDeclineReasonRequest.java
    com/baubap/modules/loan/authorized/data/UserLoanDeclineReasonResponse.java
    com/baubap/modules/loan/authorized/data/UserLoanDeclineReasonsRequest.java
    com/baubap/modules/loan/authorized/data/UserLoanDeclineReasonsResponse.java
    com/baubap/modules/push/PushLogRequest.java
    com/baubap/modules/referrals/data/api/ContactResponse.java
    com/baubap/modules/referrals/data/api/ContactsResponse.java
    com/baubap/modules/referrals/data/api/CurrentPromotionResponse.java
    com/baubap/modules/referrals/data/api/InviteesResponse.java
    com/baubap/modules/referrals/data/api/MovementResponse.java
    com/baubap/modules/referrals/data/api/PhoneRequest.java
    com/baubap/modules/referrals/data/api/ReferralInfoObjectResponse.java
    com/baubap/modules/referrals/data/api/ReferralInfoResponse.java
    com/baubap/modules/referrals/data/api/ReferralMovementsRequest.java
    com/baubap/modules/referrals/data/api/ReferralMovementsResponse.java
    com/baubap/modules/referrals/data/api/ReferralWithdrawRequest.java
    com/baubap/modules/referrals/data/api/ReferralsRankingResponse.java
    com/baubap/modules/referrals/data/api/ReferralsUserListResponse.java
    com/baubap/modules/referrals/data/api/ReferrerResponse.java
    com/baubap/modules/referrals/data/api/SharerResponse.java
    com/baubap/modules/request/cashflow/data/CashFlowWaitingResponse.java
    com/baubap/modules/request/cashflow/data/SaveCashFlowRequest.java
    com/baubap/modules/request/cashflow/data/SaveCashFlowResponse.java
    com/baubap/modules/request/data/api/WorkHoursResponse.java
    com/baubap/modules/security/data/api/IntegrityNonceResponse.java
    com/baubap/modules/security/data/api/IntegrityTokenRequest.java
    com/baubap/modules/services/payments/data/api/CancelOrderResponse.java
    com/baubap/modules/services/payments/data/api/OrderRequest.java
    com/baubap/modules/services/payments/data/api/OrderResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsInfoResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsMovementsResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsOptionResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsPaymentMethodResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsPaymentMethodSurveyResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsPaymentRequest.java
    com/baubap/modules/services/payments/data/api/PaymentsPaymentResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsProductRequest.java
    com/baubap/modules/services/payments/data/api/PaymentsProductResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsReferenceResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsServiceResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsServiceSupplierRequest.java
    com/baubap/modules/services/payments/data/api/PaymentsServicesRequest.java
    com/baubap/modules/services/payments/data/api/PaymentsSupplierRequest.java
    com/baubap/modules/services/payments/data/api/PaymentsSupplierResponse.java
    com/baubap/modules/services/payments/data/api/PaymentsVerifyReferenceRequest.java
    com/baubap/modules/services/payments/data/api/PendingOrderResponse.java
    com/baubap/networking/request/AnalyticEventRequest.java
    com/baubap/networking/request/GenericRequest.java
    com/baubap/networking/request/ResponseToken.java
    com/baubap/networking/request/cleanslate/OptionRequest.java
    com/baubap/networking/request/cleanslate/RepaymentOptionRequest.java
    com/baubap/networking/request/cleanslate/RepaymentPlanRequest.java
    com/baubap/networking/request/cleanslate/SimulationPlanRequest.java
    com/baubap/networking/response/ErrorResponse.java
    com/baubap/networking/response/GenericResponse.java
    com/baubap/networking/response/cleanslate/DetailsResponse.java
    com/baubap/networking/response/cleanslate/GenericRepaymentPlanResponse.java
    com/baubap/networking/response/cleanslate/ItemPlanResponse.java
    com/baubap/networking/response/cleanslate/PaymentOptionResponse.java
    com/baubap/networking/response/cleanslate/PaymentResponse.java
    com/baubap/networking/response/cleanslate/PaymentScheduleDetailResponse.java
    com/baubap/networking/response/cleanslate/PlanOptionResponse.java
    com/baubap/networking/response/cleanslate/PlanResponse.java
    com/baubap/networking/response/cleanslate/RepaymentDataResponse.java
    com/baubap/networking/response/cleanslate/RepaymentPlanDataResponse.java
    com/baubap/networking/response/cleanslate/RepaymentPlanOptionResponse.java
    com/baubap/networking/response/cleanslate/RepaymentPlanResponse.java
    com/baubap/networking/response/cleanslate/RepaymentResultResponse.java
    com/baubap/networking/response/cleanslate/SelectedOptionsResponse.java
    com/baubap/networking/response/cleanslate/SimulationResponse.java
    com/baubap/networking/response/cleanslate/TemplateResponse.java
    com/baubap/networking/response/cleanslate/UserResponse.java
    com/baubap/networking/response/cleanslate/activeplan/UserActivePlan.java
    com/baubap/networking/response/cleanslate/simulationplan/CurrentLoan.java
    com/baubap/networking/response/cleanslate/simulationplan/Schedule.java
    com/baubap/networking/response/cleanslate/simulationplan/ScheduleSimulationResponse.java
    com/baubap/networking/response/cleanslate/vdv/RepaymentPlanDataVDVResponse.java
    com/baubap/networking/response/cleanslate/voucher/RepaymentDataResponse.java
    com/baubap/presentation/main/MainActivity.java
    com/braze/Braze.java
    com/braze/a.java
    com/braze/configuration/RuntimeAppConfigurationProvider.java
    com/braze/images/DefaultBrazeImageLoader.java
    com/braze/location/GooglePlayLocationUtils.java
    com/braze/managers/BrazeGeofenceManager.java
    com/braze/support/BrazeFileUtils.java
    com/braze/support/BrazeImageUtils.java
    com/braze/support/PermissionUtils.java
    com/braze/support/StringUtils.java
    com/braze/support/WebContentUtils.java
    com/braze/support/i.java
    com/braze/ui/inappmessage/utils/BackgroundInAppMessagePreparer.java
    com/braze/ui/inappmessage/utils/InAppMessageWebViewClient.java
    com/braze/ui/inappmessage/views/InAppMessageBaseView.java
    com/intercom/twig/Twig.java
    cp/e.java
    cp/e0.java
    cp/m.java
    cp/z.java
    d60/c0.java
    d60/e0.java
    d60/i0.java
    d60/n0.java
    dp/i.java
    dz/d.java
    e00/g.java
    e20/d.java
    e30/h.java
    e30/i.java
    e60/b.java
    e7/h.java
    e7/j.java
    e7/m.java
    e7/n.java
    ea/b.java
    ea/c.java
    ea/e.java
    ea/f.java
    ea/i.java
    ea/l.java
    ea/u.java
    ec/a.java
    ec/b.java
    ep/a.java
    ep/b.java
    ep/d.java
    ey/b0.java
    ey/c0.java
    ey/n.java
    ey/q.java
    f/e.java
    f0/c.java
    f0/n.java
    f00/d0.java
    f00/k.java
    f00/n.java
    f00/q.java
    f00/v.java
    f1/r.java
    f20/a.java
    f40/q.java
    f5/a.java
    f6/b1.java
    f6/c1.java
    f6/f.java
    f6/f1.java
    f6/k1.java
    f9/a.java
    f9/b.java
    f9/e.java
    f9/f.java
    fa/h.java
    fc/h.java
    fp/c.java
    fz/c.java
    g/a.java
    g0/b.java
    g0/i.java
    g10/a.java
    g10/e.java
    g10/f.java
    g30/h.java
    g50/d.java
    g50/e.java
    g50/g.java
    g50/h.java
    g50/j.java
    g50/n.java
    g50/q0.java
    g50/t0.java
    g50/v0.java
    g50/w0.java
    g50/x.java
    g50/y0.java
    g9/e.java
    gf/c1.java
    gp/d.java
    gp/e0.java
    gp/f0.java
    gp/g.java
    gp/g0.java
    gp/h.java
    gp/i.java
    gp/j.java
    gp/k.java
    gp/p.java
    gp/v.java
    gv/b.java
    gv/d.java
    gx/a.java
    gz/a.java
    h00/a.java
    h00/b.java
    h00/c.java
    h00/n.java
    h00/x.java
    h20/c.java
    h30/e.java
    h40/k.java
    h50/c.java
    h7/c.java
    h7/m.java
    h7/p.java
    h9/a.java
    he/g.java
    hk/d.java
    hm/w.java
    hp/b.java
    hp/c.java
    hp/e.java
    hq/a.java
    hq/d.java
    hv/c.java
    hv/m.java
    hy/c.java
    i/b0.java
    i/y0.java
    i00/h.java
    i00/i.java
    i00/j.java
    i00/k.java
    i00/l.java
    i00/p.java
    i20/d.java
    i3/e1.java
    i5/l1.java
    i5/m0.java
    i50/a.java
    i50/g.java
    i50/h.java
    i50/i.java
    i50/j.java
    i8/e.java
    ig/w.java
    ih/c.java
    in/f.java
    io/ktor/utils/io/jvm/javaio/i.java
    io/ktor/utils/io/jvm/javaio/m.java
    io/ktor/utils/io/jvm/javaio/n.java
    io/ktor/utils/io/jvm/javaio/p.java
    io/sentry/ShutdownHookIntegration.java
    io/sentry/UncaughtExceptionHandlerIntegration.java
    io/sentry/a0.java
    io/sentry/android/core/ActivityLifecycleIntegration.java
    io/sentry/android/core/AnrIntegration.java
    io/sentry/android/core/AnrV2Integration.java
    io/sentry/android/core/AppComponentsBreadcrumbsIntegration.java
    io/sentry/android/core/AppLifecycleIntegration.java
    io/sentry/android/core/CurrentActivityIntegration.java
    io/sentry/android/core/EnvelopeFileObserverIntegration.java
    io/sentry/android/core/NdkIntegration.java
    io/sentry/android/core/NetworkBreadcrumbsIntegration.java
    io/sentry/android/core/PhoneStateBreadcrumbsIntegration.java
    io/sentry/android/core/SystemEventsBreadcrumbsIntegration.java
    io/sentry/android/core/TempSensorBreadcrumbsIntegration.java
    io/sentry/android/core/UserInteractionIntegration.java
    io/sentry/android/core/c.java
    io/sentry/android/core/cache/a.java
    io/sentry/android/core/g0.java
    io/sentry/android/core/i.java
    io/sentry/android/core/i0.java
    io/sentry/android/core/internal/modules/a.java
    io/sentry/android/core/internal/util/c.java
    io/sentry/android/core/p.java
    io/sentry/android/fragment/FragmentLifecycleIntegration.java
    io/sentry/android/okhttp/b.java
    io/sentry/android/okhttp/d.java
    io/sentry/b1.java
    io/sentry/cache/a.java
    io/sentry/cache/b.java
    io/sentry/d0.java
    io/sentry/d1.java
    io/sentry/d3.java
    io/sentry/e1.java
    io/sentry/e2.java
    io/sentry/g.java
    io/sentry/h1.java
    io/sentry/instrumentation/file/b.java
    io/sentry/instrumentation/file/c.java
    io/sentry/instrumentation/file/d.java
    io/sentry/instrumentation/file/e.java
    io/sentry/instrumentation/file/f.java
    io/sentry/internal/modules/d.java
    io/sentry/k0.java
    io/sentry/l2.java
    io/sentry/m2.java
    io/sentry/n.java
    io/sentry/o3.java
    io/sentry/p.java
    io/sentry/p1.java
    io/sentry/protocol/DebugImage.java
    io/sentry/protocol/e.java
    io/sentry/q2.java
    io/sentry/q3.java
    io/sentry/r.java
    io/sentry/r1.java
    io/sentry/r2.java
    io/sentry/s1.java
    io/sentry/s2.java
    io/sentry/transport/c.java
    io/sentry/transport/f.java
    io/sentry/transport/h.java
    io/sentry/util/g.java
    io/sentry/vendor/gson/stream/b.java
    is/b.java
    is/i.java
    iv/l.java
    iw/c.java
    iy/d.java
    j3/v1.java
    j6/e.java
    je/b.java
    jp/a.java
    jp/a0.java
    jp/b.java
    jp/b0.java
    jp/g.java
    jp/j.java
    jp/l.java
    jp/p.java
    jp/t.java
    jp/v.java
    jp/x.java
    k/b.java
    k20/k.java
    k20/o.java
    k50/a.java
    k50/b.java
    k50/c.java
    k50/d.java
    k50/e.java
    k50/f.java
    k50/i.java
    k50/k.java
    k50/l.java
    k50/n.java
    kp/a.java
    kr/a.java
    ku/o.java
    l20/i.java
    l50/g.java
    la/h.java
    lb/i.java
    lb/j.java
    lb/k.java
    lc/p.java
    li/e.java
    lj/a.java
    lp/j.java
    lq/d.java
    lq/e.java
    lu/k.java
    lu/n.java
    ly/a.java
    ly/g.java
    ly/h.java
    ly/i.java
    ly/k.java
    ly/n.java
    ly/p.java
    ly/v.java
    m/j.java
    m0/f.java
    m0/j.java
    m0/l.java
    m30/i.java
    m30/j.java
    m30/k.java
    m30/l.java
    m30/m.java
    m30/n.java
    m30/y.java
    m40/d1.java
    m40/i0.java
    m50/b.java
    m50/f.java
    m50/h.java
    m6/l0.java
    m6/x.java
    m7/c.java
    mi/p.java
    mm/a.java
    mr/b.java
    my/h.java
    my/j.java
    my/l.java
    my/m.java
    n/d.java
    n00/b.java
    n00/c.java
    n00/d.java
    n1/d.java
    n1/o.java
    n30/a.java
    n30/u.java
    n30/v.java
    n30/w.java
    n50/a.java
    n50/a0.java
    n50/b0.java
    n50/d.java
    n50/f.java
    n50/f0.java
    n50/k.java
    n50/l.java
    n50/m.java
    n50/n.java
    n50/o.java
    n50/p.java
    n50/q.java
    n50/r.java
    n50/s.java
    n50/t.java
    n50/u.java
    n50/v.java
    n50/w.java
    n50/y.java
    n50/z.java
    nh/j.java
    nq/b.java
    nt/d.java
    nt/f.java
    nx/h.java
    nx/j.java
    nx/l.java
    nx/r.java
    nx/t.java
    nz/b.java
    o/c.java
    o30/a.java
    o30/b.java
    o30/d.java
    o30/g.java
    o50/a.java
    ox/b0.java
    ox/c.java
    ox/c0.java
    ox/e2.java
    ox/f2.java
    ox/g0.java
    ox/h1.java
    ox/i1.java
    ox/k0.java
    ox/l0.java
    ox/p1.java
    ox/t0.java
    ox/u1.java
    ox/v.java
    ox/w0.java
    oy/a.java
    oy/c.java
    p50/c.java
    p6/i.java
    p6/u.java
    p8/b.java
    p8/c.java
    p8/d.java
    p8/e.java
    pa/a.java
    pq/b.java
    pq/d.java
    pq/e.java
    pv/c.java
    py/a.java
    py/b.java
    q00/a.java
    q30/d.java
    q30/k.java
    q4/a0.java
    q4/b0.java
    q4/d.java
    q4/o.java
    q4/w.java
    q50/a.java
    q8/m0.java
    q8/t0.java
    q8/u0.java
    q8/v0.java
    qd/a.java
    qd/c.java
    qd/g.java
    qd/h.java
    ql/d.java
    qn/a.java
    qr/b.java
    qr/g.java
    qt/b.java
    qx/a.java
    qz/a.java
    qz/b.java
    qz/c.java
    qz/d.java
    qz/e.java
    qz/g.java
    r4/o.java
    r4/w.java
    r5/a.java
    r5/e.java
    r5/i0.java
    r5/j0.java
    r5/q.java
    r5/z.java
    r50/a.java
    r6/b.java
    r6/b0.java
    r6/e.java
    r6/f0.java
    r6/i.java
    r6/j.java
    r6/r.java
    r6/u.java
    r6/w.java
    r9/e.java
    rh/a.java
    rr/c.java
    rr/g.java
    rv/a.java
    ry/b.java
    rz/c.java
    s00/b.java
    s00/j.java
    s30/a.java
    s40/c.java
    sb/e.java
    sb/f.java
    sb/n.java
    se/e.java
    sm/j.java
    sq/e.java
    sq/f.java
    sq/i.java
    st/b.java
    su/d.java
    sz/b.java
    t30/b.java
    t5/e.java
    t50/a.java
    t50/e.java
    t50/f.java
    t50/g.java
    t50/j.java
    t50/k.java
    t6/l0.java
    t6/p.java
    t6/x0.java
    t9/c.java
    t9/f.java
    tm/d.java
    tq/a.java
    tq/b.java
    tq/c.java
    tq/d.java
    tq/f.java
    tq/g.java
    tq/i.java
    tq/j.java
    tx/b.java
    u50/c.java
    u50/c0.java
    u50/d.java
    u50/e.java
    u50/g.java
    u50/g0.java
    u50/h.java
    u50/h0.java
    u50/i.java
    u50/i0.java
    u50/k0.java
    u50/l.java
    u50/l0.java
    u50/n.java
    u50/s.java
    u50/t.java
    u50/u.java
    u50/v.java
    u50/w.java
    u50/z.java
    u6/f.java
    u6/v.java
    u8/m.java
    ue/a.java
    ue/c.java
    ue/d.java
    ue/e.java
    up/a.java
    up/c.java
    up/d.java
    up/j.java
    uq/c.java
    uq/f.java
    uq/i.java
    ux/c.java
    v/h2.java
    v/p1.java
    v10/d.java
    v4/c.java
    v4/d.java
    v4/f.java
    v4/l.java
    v4/m.java
    v4/o.java
    v40/d.java
    v50/d.java
    v50/f.java
    v50/h.java
    v9/e0.java
    v9/j.java
    va/f.java
    va/q.java
    ve/e0.java
    vl/e.java
    vq/a.java
    vq/d.java
    vq/e.java
    vq/l.java
    w20/c.java
    w20/f.java
    w4/g.java
    w6/a.java
    w6/d0.java
    w6/f0.java
    w6/k.java
    w9/a.java
    w9/f0.java
    w9/g0.java
    w9/p.java
    w9/r.java
    wb/t.java
    wd/b.java
    we/a.java
    we/c.java
    we/k.java
    wf/f.java
    wf/r.java
    wn/b.java
    wn/d.java
    wp/j2.java
    wp/q1.java
    wq/a.java
    wq/b.java
    wt/a.java
    x1/b0.java
    x30/a.java
    x30/c.java
    x30/d.java
    x30/e.java
    x30/f.java
    x30/g.java
    x30/h.java
    x30/j.java
    x30/k.java
    x9/d.java
    xa/b.java
    xa/c0.java
    xa/e0.java
    xa/m.java
    xa/q.java
    xh/m.java
    xh/n.java
    xl/j.java
    xn/m.java
    xn/s.java
    xo/b.java
    xo/c.java
    xo/d.java
    xo/e.java
    xo/f.java
    xu/b.java
    xy/e.java
    xz/k.java
    y0/u0.java
    y4/g.java
    y4/i.java
    y4/k.java
    y4/m.java
    y5/a.java
    y5/b.java
    y5/f.java
    y5/g.java
    y5/h.java
    ya/a.java
    ya/b.java
    ya/d.java
    ya/e.java
    ya/g.java
    ya/h.java
    ya/i.java
    ys/s.java
    yu/d.java
    yy/b.java
    yy/f.java
    yy/h.java
    yz/c.java
    yz/g.java
    yz/o.java
    z4/b.java
    z4/d.java
    z50/a.java
    z7/d.java
    z8/a.java
    z8/d.java
    z8/f.java
    zo/b.java
    zo/d.java
    调用java反射机制
    a5/c.java
    az/e.java
    b50/m.java
    bo/app/b.java
    bo/app/k0.java
    bo/app/t1.java
    bw/g.java
    bw/s5.java
    c0/d.java
    c0/t.java
    c60/c.java
    c60/e.java
    com/braze/managers/BrazeGeofenceManager.java
    com/braze/push/BrazeFirebaseMessagingService.java
    com/braze/support/ReflectionUtils.java
    d60/a0.java
    d60/f1.java
    d60/i0.java
    d60/k0.java
    d60/m0.java
    d60/n0.java
    d60/o0.java
    d60/s0.java
    d60/t0.java
    d60/v0.java
    d60/w0.java
    d60/x.java
    d60/y.java
    d60/y0.java
    d60/z0.java
    e30/f.java
    e9/a.java
    ea/f.java
    ea/u.java
    f00/a.java
    f00/h.java
    f00/i.java
    f6/c.java
    f6/d.java
    f6/e.java
    f7/b.java
    fa/o.java
    ft/l.java
    fy/c.java
    g5/g.java
    h00/p.java
    h00/t.java
    h00/u.java
    h00/v.java
    h00/x.java
    ht/r.java
    i/b0.java
    i/o0.java
    i/s0.java
    i/t0.java
    i00/q.java
    i00/s.java
    i00/u.java
    i00/w.java
    i00/z.java
    i5/g1.java
    i5/g2.java
    i5/h2.java
    i5/j1.java
    i5/l2.java
    io/ktor/utils/io/b0.java
    io/sentry/android/core/internal/util/g.java
    j3/d3.java
    j3/y.java
    j60/c.java
    k00/a.java
    k00/b.java
    k00/c.java
    l00/e.java
    l10/b.java
    lu/n.java
    ly/n.java
    m/h.java
    m/i.java
    m0/l.java
    m40/e1.java
    m5/t.java
    n/o.java
    n/w.java
    n9/a.java
    nz/b.java
    o8/c.java
    o8/l.java
    o8/m.java
    p4/e.java
    p4/j.java
    p4/o.java
    p50/b.java
    p50/c.java
    p50/d.java
    p50/g.java
    p50/h.java
    p50/i.java
    p50/k.java
    p6/f0.java
    p8/b.java
    pv/f.java
    q50/e.java
    q50/h.java
    q8/j.java
    q8/m0.java
    q8/s0.java
    q8/u0.java
    r/a.java
    r4/b.java
    r40/d.java
    r40/o.java
    r6/n.java
    r6/r.java
    rv/a.java
    s30/a.java
    ss/i.java
    ss/j.java
    sv/b.java
    t2/r0.java
    t4/e.java
    t6/o.java
    tv/d.java
    u30/a.java
    u50/n.java
    u6/k.java
    v30/a.java
    v6/y.java
    v9/j0.java
    w30/a.java
    w4/g.java
    w9/e0.java
    w9/f0.java
    w9/h0.java
    x1/d0.java
    x1/s.java
    x4/n.java
    x5/a.java
    xu/b.java
    y4/f.java
    y4/g.java
    y4/h.java
    y4/i.java
    y4/j.java
    y50/a.java
    z4/k.java
    一般功能-> IPC通信
    a/a.java
    aj/b.java
    aj/e.java
    aj/q0.java
    b/a.java
    b/c.java
    b/d.java
    b/e.java
    b9/b.java
    b9/e.java
    b9/g.java
    b9/n.java
    b9/o.java
    b9/p.java
    b9/q.java
    bh/j.java
    bo/app/f0.java
    bo/app/k.java
    bo/app/m6.java
    bo/app/n.java
    bo/app/p7.java
    bo/app/s.java
    bv/f.java
    bw/d4.java
    bw/d6.java
    bw/g7.java
    bw/h6.java
    bw/j4.java
    bw/o4.java
    bw/o6.java
    bw/s7.java
    bw/t6.java
    bw/z3.java
    bw/z6.java
    c0/d.java
    ca/a.java
    ca/d.java
    ca/k.java
    ch/a.java
    cm/f.java
    com/baubap/modules/abcd/presentation/AbcdActivity.java
    com/baubap/modules/abcd/presentation/create/AbcdNewFragment.java
    com/baubap/modules/account/recovery/data/api/ContactMethodsResponse.java
    com/baubap/modules/account/recovery/presentation/nip/VerifyCodeFragment.java
    com/baubap/modules/auth/two/factor/presentation/TwoFactorAuthOtpFragment.java
    com/baubap/modules/cashback/CashbackDetailActivity.java
    com/baubap/modules/cashback/CashbackWithdrawActivity.java
    com/baubap/modules/home/presentation/ReferralsQRActivity.java
    com/baubap/modules/referrals/ReferralsActivity.java
    com/baubap/modules/referrals/presentation/ReferralsHomeFragment.java
    com/baubap/presentation/WebActivity.java
    com/baubap/presentation/main/loan/ongoing/LoanOngoingFragment.java
    com/baubap/presentation/request/RequestActivity.java
    com/baubap/presentation/request/permissions/PermissionsFragment.java
    com/baubap/presentation/sign/verify/ReceiveCodeActivity.java
    com/baubap/presentation/sign/verify/VerifyPhoneFragment.java
    com/baubap/presentation/splash/SplashActivity.java
    com/baubap/push/BrazeBaubapBroadcastReceiver.java
    com/baubap/push/NotificationBroadcastReceiver.java
    com/braze/Braze.java
    com/braze/BrazeBootReceiver.java
    com/braze/BrazeFlushPushDeliveryReceiver.java
    com/braze/BrazeInternal.java
    com/braze/IBraze.java
    com/braze/IBrazeDeeplinkHandler.java
    com/braze/location/BrazeActionReceiver$ActionReceiver$run$1.java
    com/braze/location/BrazeActionReceiver.java
    com/braze/location/BrazeInternalGeofenceApi.java
    com/braze/location/BrazeInternalLocationApi.java
    com/braze/location/GooglePlayLocationUtils.java
    com/braze/location/IBrazeGeofenceApi.java
    com/braze/managers/BrazeGeofenceManager.java
    com/braze/push/BrazeFirebaseMessagingService.java
    com/braze/push/BrazeHuaweiPushHandler.java
    com/braze/push/BrazeNotificationActionUtils.java
    com/braze/push/BrazeNotificationFactory.java
    com/braze/push/BrazeNotificationStyleFactory.java
    com/braze/push/BrazeNotificationUtils$routeUserWithNotificationOpenedIntent$1.java
    com/braze/push/BrazeNotificationUtils$routeUserWithNotificationOpenedIntent$2.java
    com/braze/push/BrazeNotificationUtils$routeUserWithNotificationOpenedIntent$3.java
    com/braze/push/BrazeNotificationUtils$routeUserWithNotificationOpenedIntent$5.java
    com/braze/push/BrazeNotificationUtils$sendPushActionIntent$1.java
    com/braze/push/BrazeNotificationUtils$sendPushActionIntent$2.java
    com/braze/push/BrazeNotificationUtils$setContentIntentIfPresent$1.java
    com/braze/push/BrazeNotificationUtils$setDeleteIntent$1.java
    com/braze/push/BrazeNotificationUtils.java
    com/braze/push/BrazePushReceiver$Companion$handleAdmRegistrationEventIfEnabled$1.java
    com/braze/push/BrazePushReceiver$Companion$handleAdmRegistrationIntent$1.java
    com/braze/push/BrazePushReceiver$Companion$handleAdmRegistrationIntent$2.java
    com/braze/push/BrazePushReceiver$Companion$handleAdmRegistrationIntent$3.java
    com/braze/push/BrazePushReceiver$Companion$handleAdmRegistrationIntent$4.java
    com/braze/push/BrazePushReceiver$Companion$handlePush$1.java
    com/braze/push/BrazePushReceiver$Companion$handlePush$performWork$1.java
    com/braze/push/BrazePushReceiver$Companion$handlePush$performWork$2.java
    com/braze/push/BrazePushReceiver$Companion$handleReceivedIntent$1.java
    com/braze/push/BrazePushReceiver.java
    com/braze/push/NotificationTrampolineActivity$onResume$3.java
    com/braze/push/NotificationTrampolineActivity.java
    com/braze/support/IntentUtils.java
    com/braze/support/PermissionUtils.java
    com/braze/support/WebContentUtils.java
    com/braze/support/a.java
    com/braze/ui/BrazeDeeplinkHandler.java
    com/braze/ui/BrazeWebViewActivity.java
    com/braze/ui/actions/NewsfeedAction.java
    com/braze/ui/actions/UriAction$getActionViewIntent$1.java
    com/braze/ui/actions/UriAction$getIntentArrayWithConfiguredBackStack$1.java
    com/braze/ui/actions/UriAction$getIntentArrayWithConfiguredBackStack$2.java
    com/braze/ui/actions/UriAction$getIntentArrayWithConfiguredBackStack$4.java
    com/braze/ui/actions/UriAction$getIntentArrayWithConfiguredBackStack$5.java
    com/braze/ui/actions/UriAction$getWebViewActivityIntent$webViewActivityIntent$1.java
    com/braze/ui/actions/UriAction.java
    com/braze/ui/inappmessage/views/InAppMessageHtmlBaseView.java
    com/braze/ui/support/UriUtils.java
    cv/a.java
    cv/g.java
    cv/k.java
    cv/m.java
    cv/t.java
    d0/l.java
    da/c.java
    dw/a.java
    dw/b.java
    e5/c.java
    e5/e.java
    ea/c.java
    ea/f.java
    ei/d.java
    ep/b.java
    ev/b.java
    ey/m.java
    f/a.java
    f/h.java
    f/j.java
    f/k.java
    f1/r.java
    f6/f1.java
    f6/g0.java
    fa/g.java
    g/b.java
    g/c.java
    g/d.java
    g/e.java
    g0/i.java
    gk/h.java
    gk/q0.java
    gk/x.java
    go/g.java
    gv/f.java
    gv/j.java
    hk/m.java
    hq/a.java
    hv/a.java
    hv/b.java
    hv/e.java
    hv/g.java
    hv/h.java
    hv/j.java
    i/k0.java
    i/l0.java
    i/s.java
    ih/c.java
    ij/f.java
    ij/i.java
    in/h0.java
    in/s.java
    io/sentry/android/core/SystemEventsBreadcrumbsIntegration.java
    iv/a.java
    iv/i.java
    iv/p.java
    iv/q.java
    iv/s.java
    j3/a.java
    jn/f.java
    jn/k.java
    jn/t.java
    jx/b.java
    jx/e.java
    ks/c.java
    ks/e.java
    kv/c.java
    kx/a.java
    kx/c.java
    kx/i.java
    kx/j.java
    kx/l.java
    l10/b.java
    l6/a.java
    lk/i.java
    lm/e.java
    lu/n.java
    m5/t.java
    mx/a.java
    mx/b.java
    mx/b0.java
    mx/d.java
    mx/j.java
    n/a.java
    n/f0.java
    n/g.java
    n/o.java
    n/q.java
    n/w.java
    np/s.java
    nv/j.java
    ov/a.java
    p6/u.java
    q8/b.java
    q8/d.java
    q8/u.java
    qn/a.java
    rn/a.java
    rq/a.java
    s/a.java
    s8/q.java
    sb/f.java
    sm/f.java
    sv/b.java
    t6/a.java
    td/b.java
    tv/d.java
    tx/g.java
    tx/h.java
    ul/a0.java
    ul/h.java
    ul/l.java
    ul/w.java
    un/r.java
    un/z.java
    v00/e.java
    v4/a.java
    v4/g.java
    v4/j.java
    v4/l.java
    v6/g.java
    v6/t0.java
    vl/i.java
    w4/d.java
    w4/g.java
    w9/f0.java
    w9/q.java
    wj/f.java
    wn/b.java
    wu/a.java
    x1/b0.java
    x5/b.java
    xf/r.java
    xl/n.java
    xn/m.java
    xn/s.java
    xu/b.java
    y9/a.java
    y9/b.java
    y9/c.java
    y9/d.java
    y9/g.java
    y9/h.java
    y9/j.java
    y9/k.java
    yg/c.java
    yg/e.java
    yl/x.java
    yq/a.java
    yv/c0.java
    yv/f0.java
    yv/i0.java
    yv/v.java
    z50/a.java
    zf/b.java
    zf/c.java
    zq/c.java
    组件-> 启动 Activity
    隐私数据-> 获取已安装的应用程序
    一般功能-> 获取系统服务(getSystemService)
    网络通信-> TCP套接字
    网络通信-> HTTP建立连接
    加密解密-> Base64 加密
    隐私数据-> 获取GPS位置信息
    恶意行为-> 深度链接滥用
    加密解密-> 信息摘要算法
    反分析-> 检测Root
    加密解密-> Crypto加解密组件
    反分析-> 检测模拟器 io/sentry/android/core/y.java
    隐私数据-> 剪贴板数据读写操作
    网络通信-> 蓝牙连接 v4/k.java
    恶意持久化-> 服务保活
    敏感行为-> 检测了是否被jdb调试 io/sentry/android/core/a.java
    ly/g.java
    反调试-> 检测调试器 io/sentry/android/core/a.java
    ly/g.java
    一般功能-> 获取活动网路信息
    组件-> 启动 Service
    网络通信-> HTTPS建立连接
    网络通信-> SSL证书处理
    进程操作-> 获取运行的进程\服务
    网络通信-> UDP数据包 p10/b.java
    r6/f0.java
    网络通信-> UDP数据报套接字 p10/b.java
    r6/f0.java
    恶意行为-> 生物识别绕过 a5/a.java
    加密解密-> Base64 解密
    反分析-> 检测Frida Hook框架
    网络通信-> URLConnection
    网络通信-> WebView JavaScript接口
    网络通信-> WebView GET请求 com/braze/ui/inappmessage/views/InAppMessageHtmlBaseView.java
    网络通信-> WebView 相关
    设备指纹-> 查看本机IMSI c60/e.java
    xu/b.java
    设备指纹-> DeviceId c60/e.java
    xu/b.java
    设备指纹-> 查看手机软件版本号 c60/e.java
    xu/b.java
    设备指纹-> 查看本机SIM卡序列号 c60/e.java
    xu/b.java
    设备指纹-> getSimOperator c60/e.java
    xu/b.java
    设备指纹-> 查看运营商信息 c60/e.java
    xu/b.java
    一般功能-> 查看\修改Android系统属性 bw/g.java
    p6/f0.java
    DEX-> 动态加载
    SSL绕过-> 绕过证书固定
    隐私数据-> 屏幕截图,截取自己应用内部界面 e8/h.java
    一般功能-> 获取网络接口信息 ea/f.java
    tx/b.java
    辅助功能accessibility相关
    一般功能-> Android通知 com/braze/push/BrazePushReceiver.java
    JavaScript 接口方法 com/braze/ui/inappmessage/jsinterface/InAppMessageJavascriptInterface.java
    com/braze/ui/inappmessage/jsinterface/InAppMessageUserJavascriptInterface.java
    一般功能-> 加载so文件 com/baubap/data/api/EncryptionInterceptor.java
    io/sentry/android/ndk/SentryNdk.java
    命令执行-> getRuntime.exec() com/braze/support/i.java
    nt/d.java
    恶意行为-> 加密货币挖矿
    隐私数据-> 读取短信 i/k0.java
    一般功能-> 日历相关操作 com/baubap/presentation/main/loan/ongoing/LoanOngoingFragment.java
    zf/b.java
    一般功能-> 获取Android广告ID bw/x6.java
    组件-> 发送广播
    一般功能-> 传感器相关操作 g7/k.java
    io/sentry/android/core/TempSensorBreadcrumbsIntegration.java
    隐私数据-> 用户账户管理 jn/w.java
    进程操作-> 获取进程pid
    DEX-> 加载和操作Dex文件 tv/g.java
    恶意持久化-> 开机自启动 com/braze/BrazeBootReceiver.java
    io/sentry/android/core/SystemEventsBreadcrumbsIntegration.java
    恶意行为-> 权限提升(su) io/sentry/android/core/internal/util/e.java
    ly/g.java
    隐私数据-> 读写通讯录 bo/app/p7.java
    组件-> ContentProvider com/datadog/android/rum/DdRumContentProvider.java
    i/b0.java
    io/sentry/android/core/e0.java

    安全漏洞检测

    高危
    1
    警告
    8
    信息
    3
    安全
    2
    屏蔽
    0
    序号 问题 等级 参考标准 文件位置 操作
    1 应用程序记录日志信息,不得记录敏感信息 信息 CWE: CWE-532: 通过日志文件的信息暴露
    OWASP MASVS: MSTG-STORAGE-3
    升级会员:解锁高级权限
    2 文件可能包含硬编码的敏感信息,如用户名、密码、密钥等 警告 CWE: CWE-312: 明文存储敏感信息
    OWASP Top 10: M9: Reverse Engineering
    OWASP MASVS: MSTG-STORAGE-14
    升级会员:解锁高级权限
    3 应用程序使用不安全的随机数生成器 警告 CWE: CWE-330: 使用不充分的随机数
    OWASP Top 10: M5: Insufficient Cryptography
    OWASP MASVS: MSTG-CRYPTO-6
    升级会员:解锁高级权限
    4 应用程序可以写入应用程序目录。敏感信息应加密 信息 CWE: CWE-276: 默认权限不正确
    OWASP MASVS: MSTG-STORAGE-14
    升级会员:解锁高级权限
    5 此应用程序可能具有Root检测功能 安全
    OWASP MASVS: MSTG-RESILIENCE-1
    升级会员:解锁高级权限
    6 应用程序使用SQLite数据库并执行原始SQL查询。原始SQL查询中不受信任的用户输入可能会导致SQL注入。敏感信息也应加密并写入数据库 警告 CWE: CWE-89: SQL命令中使用的特殊元素转义处理不恰当('SQL 注入')
    OWASP Top 10: M7: Client Code Quality
    升级会员:解锁高级权限
    7 如果一个应用程序使用WebView.loadDataWithBaseURL方法来加载一个网页到WebView,那么这个应用程序可能会遭受跨站脚本攻击 高危 CWE: CWE-79: 在Web页面生成时对输入的转义处理不恰当('跨站脚本')
    OWASP Top 10: M1: Improper Platform Usage
    OWASP MASVS: MSTG-PLATFORM-6
    升级会员:解锁高级权限
    8 此应用程序使用SSL Pinning 来检测或防止安全通信通道中的MITM攻击 安全
    OWASP MASVS: MSTG-NETWORK-4
    升级会员:解锁高级权限
    9 MD5是已知存在哈希冲突的弱哈希 警告 CWE: CWE-327: 使用了破损或被认为是不安全的加密算法
    OWASP Top 10: M5: Insufficient Cryptography
    OWASP MASVS: MSTG-CRYPTO-4
    升级会员:解锁高级权限
    10 此应用程序将数据复制到剪贴板。敏感数据不应复制到剪贴板,因为其他应用程序可以访问它 信息
    OWASP MASVS: MSTG-STORAGE-10
    升级会员:解锁高级权限
    11 应用程序可以读取/写入外部存储器,任何应用程序都可以读取写入外部存储器的数据 警告 CWE: CWE-276: 默认权限不正确
    OWASP Top 10: M2: Insecure Data Storage
    OWASP MASVS: MSTG-STORAGE-2
    升级会员:解锁高级权限
    12 应用程序创建临时文件。敏感信息永远不应该被写进临时文件 警告 CWE: CWE-276: 默认权限不正确
    OWASP Top 10: M2: Insecure Data Storage
    OWASP MASVS: MSTG-STORAGE-2
    升级会员:解锁高级权限
    13 SHA-1是已知存在哈希冲突的弱哈希 警告 CWE: CWE-327: 使用了破损或被认为是不安全的加密算法
    OWASP Top 10: M5: Insufficient Cryptography
    OWASP MASVS: MSTG-CRYPTO-4
    升级会员:解锁高级权限
    14 此应用程序可能会请求root(超级用户)权限 警告 CWE: CWE-250: 以不必要的权限执行
    OWASP MASVS: MSTG-RESILIENCE-1
    升级会员:解锁高级权限

    Native库安全分析

    序号 动态库 NX(堆栈禁止执行) PIE STACK CANARY(栈保护) RELRO RPATH(指定SO搜索路径) RUNPATH(指定SO搜索路径) FORTIFY(常用函数加强检查) SYMBOLS STRIPPED(裁剪符号表)
    1 arm64-v8a/libapp.so True
    info
    二进制文件设置了 NX 位。这标志着内存页面不可执行,使得攻击者注入的 shellcode 不可执行。
    动态共享对象 (DSO)
    info
    共享库是使用 -fPIC 标志构建的,该标志启用与地址无关的代码。这使得面向返回的编程 (ROP) 攻击更难可靠地执行。
    True
    info
    这个二进制文件在栈上添加了一个栈哨兵值,以便它会被溢出返回地址的栈缓冲区覆盖。这样可以通过在函数返回之前验证栈哨兵的完整性来检测溢出
    Full RELRO
    info
    此共享对象已完全启用 RELRO。 RELRO 确保 GOT 不会在易受攻击的 ELF 二进制文件中被覆盖。在完整 RELRO 中,整个 GOT(.got 和 .got.plt 两者)被标记为只读。
    None
    info
    二进制文件没有设置运行时搜索路径或RPATH
    None
    info
    二进制文件没有设置 RUNPATH
    True
    info
    二进制文件有以下加固函数: ['__memmove_chk', '__strlen_chk', '__vsnprintf_chk']
    True
    info
    符号被剥离

    文件分析

    序号 问题 文件

    行为分析

    编号 行为 标签 文件
    00013 读取文件并将其放入流中 文件
    升级会员:解锁高级权限
    00109 连接到 URL 并获取响应代码 网络
    命令
    升级会员:解锁高级权限
    00063 隐式意图(查看网页、拨打电话等) 控制
    升级会员:解锁高级权限
    00028 从assets目录中读取文件 文件
    升级会员:解锁高级权限
    00025 监视要执行的一般操作 反射
    升级会员:解锁高级权限
    00091 从广播中检索数据 信息收集
    升级会员:解锁高级权限
    00009 将游标中的数据放入JSON对象 文件
    升级会员:解锁高级权限
    00022 从给定的文件绝对路径打开文件 文件
    升级会员:解锁高级权限
    00051 通过setData隐式意图(查看网页、拨打电话等) 控制
    升级会员:解锁高级权限
    00078 获取网络运营商名称 信息收集
    电话服务
    升级会员:解锁高级权限
    00112 获取日历事件的日期 信息收集
    日历
    升级会员:解锁高级权限
    00108 从给定的 URL 读取输入流 网络
    命令
    升级会员:解锁高级权限
    00024 Base64解码后写入文件 反射
    文件
    升级会员:解锁高级权限
    00121 创建目录 文件
    命令
    升级会员:解锁高级权限
    00125 检查给定的文件路径是否存在 文件
    升级会员:解锁高级权限
    00162 创建 InetSocketAddress 对象并连接到它 socket
    升级会员:解锁高级权限
    00163 创建新的 Socket 并连接到它 socket
    升级会员:解锁高级权限
    00128 查询用户账户信息 信息收集
    账号
    升级会员:解锁高级权限
    00123 连接到远程服务器后将响应保存为 JSON 网络
    命令
    升级会员:解锁高级权限
    00096 连接到 URL 并设置请求方法 命令
    网络
    升级会员:解锁高级权限
    00089 连接到 URL 并接收来自服务器的输入流 命令
    网络
    升级会员:解锁高级权限
    00030 通过给定的 URL 连接到远程服务器 网络
    升级会员:解锁高级权限
    00094 连接到 URL 并从中读取数据 命令
    网络
    升级会员:解锁高级权限
    00206 检查视图的文本是否包含给定的字符串 无障碍服务
    升级会员:解锁高级权限
    00012 读取数据并放入缓冲流 文件
    升级会员:解锁高级权限
    00147 获取当前位置的时间 信息收集
    位置
    升级会员:解锁高级权限
    00075 获取设备的位置 信息收集
    位置
    升级会员:解锁高级权限
    00036 从 res/raw 目录获取资源文件 反射
    升级会员:解锁高级权限
    00015 将缓冲流(数据)放入 JSON 对象 文件
    升级会员:解锁高级权限
    00014 将文件读入流并将其放入 JSON 对象中 文件
    升级会员:解锁高级权限
    00016 获取设备的位置信息并将其放入 JSON 对象 位置
    信息收集
    升级会员:解锁高级权限
    00005 获取文件的绝对路径并将其放入 JSON 对象 文件
    升级会员:解锁高级权限
    00137 获取设备的最后已知位置 位置
    信息收集
    升级会员:解锁高级权限
    00113 获取位置并将其放入 JSON 信息收集
    位置
    升级会员:解锁高级权限
    00114 创建到代理地址的安全套接字连接 网络
    命令
    升级会员:解锁高级权限
    00132 查询ISO国家代码 电话服务
    信息收集
    升级会员:解锁高级权限
    00103 检查活动网络类型 网络
    升级会员:解锁高级权限
    00098 检查网络是否已连接 网络
    升级会员:解锁高级权限
    00059 查询SIM卡状态 信息收集
    升级会员:解锁高级权限
    00001 初始化位图对象并将数据(例如JPEG)压缩为位图对象 相机
    升级会员:解锁高级权限
    00159 使用辅助服务执行通过文本获取节点信息的操作 无障碍服务
    升级会员:解锁高级权限

    IP地理位置

    恶意域名检测

    域名 状态 中国境内 位置信息 解析
    api.baubap.com 安全
    IP地址: 52.222.244.40
    国家: 美国
    地区: 加利福尼亚
    城市: 洛杉矶
    查看: Google 地图

    ktor.io 安全
    IP地址: 142.250.217.142
    国家: 美国
    地区: 加利福尼亚
    城市: 洛杉矶
    查看: Google 地图

    goo.gl 安全
    IP地址: 142.250.217.142
    国家: 美国
    地区: 佛罗里达州
    城市: 迈阿密
    查看: Google 地图

    baubap-6af91.firebaseio.com 安全
    IP地址: 35.201.97.85
    国家: 美国
    地区: 密苏里州
    城市: 堪萨斯城
    查看: Google 地图

    s3.us-east-2.amazonaws.com 安全
    IP地址: 52.222.244.40
    国家: 美国
    地区: 俄亥俄州
    城市: 哥伦布
    查看: Google 地图

    www.amazon.com.mx 安全
    IP地址: 3.167.218.117
    国家: 美国
    地区: 加利福尼亚
    城市: 洛杉矶
    查看: Google 地图

    atencion.baubap.com 安全
    没有可用的地理位置信息。
    app-measurement.com 安全
    IP地址: 180.163.150.161
    国家: 中国
    地区: 上海
    城市: 上海
    查看: 高德地图

    www.braze.com 安全
    IP地址: 3.167.218.117
    国家: 美国
    地区: 加利福尼亚
    城市: 旧金山
    查看: Google 地图

    goo.gle 安全
    IP地址: 3.167.218.117
    国家: 美国
    地区: 纽约
    城市: 纽约市
    查看: Google 地图

    aomedia.org 安全
    IP地址: 3.167.218.117
    国家: 美国
    地区: 宾夕法尼亚
    城市: 加利福尼亚
    查看: Google 地图

    sondheim.braze.com 安全
    IP地址: 172.64.144.252
    国家: 美国
    地区: 加利福尼亚
    城市: 旧金山
    查看: Google 地图

    media.baubap.com 安全
    IP地址: 18.65.25.37
    国家: 美国
    地区: 加利福尼亚
    城市: 洛杉矶
    查看: Google 地图

    dust.k8s.test-001.d-usw-2.braze.com 安全
    没有可用的地理位置信息。
    www.baubap.com 安全
    IP地址: 52.223.52.2
    国家: 美国
    地区: 华盛顿
    城市: 西雅图
    查看: Google 地图

    sdk.iad-01.braze.com 安全
    IP地址: 3.167.218.117
    国家: 美国
    地区: 加利福尼亚
    城市: 旧金山
    查看: Google 地图

    iamcache.braze 安全
    没有可用的地理位置信息。

    手机号提取

    URL链接分析

    URL信息 源码文件
    https://media.baubap.com/android/services_payments/pending_orders.png
    dl/u.java
    https://media.baubap.com/android/home/pe_rebate.png
    aj/h.java
    https://console.firebase.google.com
    xu/b.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    aj/g.java
    https://media.baubap.com/android/sign/phone_verification.json
    com/baubap/modules/account/recovery/presentation/nip/VerifyCodeEmailFragment.java
    https://media.baubap.com/android/cashback/cashback_home_state.svg
    bo/s.java
    https://media.baubap.com/android/principito/design/system/img_ds_welcome.png
    nn/a.java
    https://www.baubap.com/va-de-vuelta/preguntas-frecuentes
    https://www.baubap.com/va-de-vuelta/terminos-y-condiciones
    jh/b.java
    https://www.baubap.com/va-de-vuelta/preguntas-frecuentes
    https://www.baubap.com/va-de-vuelta/terminos-y-condiciones
    uh/b.java
    https://%s/%s/%s
    fz/c.java
    https://media.baubap.com/android/loan-request/permissions/ic_sms_permission.svg
    https://media.baubap.com/android/loan-request/permissions/ic_calendar_permission.svg
    https://media.baubap.com/android/loan-request/permissions/ic_phone_permission.svg
    https://media.baubap.com/android/loan-request/permissions/ic_location_permission.svg
    com/baubap/presentation/request/permissions/PermissionsFragment.java
    https://media.baubap.com/android/cashback/cashback_pending.svg
    ea/f.java
    https://www.baubap.com/terminos-y-condiciones/
    oi/b.java
    www.google.com
    https://www.google.com
    https://goo.gl/naoooi
    bw/s7.java
    https://www.baubap.com/terminos-y-condiciones/
    https://www.baubap.com/politica-de-privacidad/#ejercicio-derechos-arco
    yl/e.java
    https://s3.us-east-2.amazonaws.com/media.baubap.com/wrapped/2023/burbuja_sin_background.svg
    https://media.baubap.com/android/collections/extension_modal.png
    https://media.baubap.com/android/collections/partial_payments_modal.png
    https://atencion.baubap.com/es/articles/8570967-como-brindar-permisos-a-la-aplicacion
    https://media.baubap.com/android/referrals/bubble/money-bag.svg
    io/a.java
    http://play.google.com/store/apps/details?id=
    https://media.baubap.com/android/micro_loan/ic_loan_accepted.svg
    l10/b.java
    https://goo.gle/compose-feedback
    b2/t.java
    https://www.braze.com/docs/developer_guide/platform_integration_guides/android/initial_sdk_setup/android_sdk_integration/
    com/braze/Braze.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    ik/i.java
    https://media.baubap.com/android/referrals/invitation.png
    ik/c.java
    https://iamcache.braze/
    com/braze/ui/inappmessage/views/InAppMessageHtmlBaseView.java
    https://media.baubap.com/android/common/error.json
    com/baubap/modules/services/payments/presentation/payment/PaymentsErrorFragment.java
    https://media.baubap.com/android/cashback/cashback_dialog.svg
    vh/c.java
    https://www.baubap.com/politica-de-privacidad
    jn/f.java
    https://api.baubap.com/api/v2/
    w9/f0.java
    https://media.baubap.com/android/loan/approved_view.svg
    c0/d.java
    https://media.baubap.com/android/onboarding/bg_every_install_end.png
    xn/l.java
    https://media.baubap.com/android/onboarding/bg_every_install_middle.png
    xn/i.java
    https://media.baubap.com/android/onboarding/bg_every_install_start.png
    xn/f.java
    https://www.baubap.com/va-de-vuelta/preguntas-frecuentes
    f1/r.java
    https://app-measurement.com/a
    bw/w.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    xl/n.java
    https://media.baubap.com/android/common/success.json
    com/baubap/modules/common/TicketFragment.java
    https://media.baubap.com/android/permissions/get_info_banner_animation.json
    jn/l.java
    https://developer.apple.com/streaming/emsg-id3
    https://aomedia.org/emsg/id3
    r7/a.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    com/baubap/modules/home/presentation/HomeFragment.java
    https://www.baubap.com/app/invita-y-gana
    aj/e.java
    https://www.baubap.com/app/borron
    xc/f.java
    https://media.baubap.com/android/identity/kyc/scanning_face_and_id.json
    https://media.baubap.com/android/identity/kyc/ine_back.lottie
    com/baubap/modules/account/recovery/presentation/kyc/KycIneBackFragment.java
    https://media.baubap.com/android/common/error.json
    com/baubap/modules/account/recovery/presentation/kyc/KycRejectedFragment.java
    https://media.baubap.com/android/identity/kyc/scanning_face_and_id.json
    https://media.baubap.com/android/identity/kyc/how_to_take_selfie.json
    com/baubap/modules/account/recovery/presentation/kyc/KycSelfieFragment.java
    https://media.baubap.com/android/loan-request/ic_credit_history.png
    com/baubap/presentation/main/account/LoansFragment.java
    https://media.baubap.com/android/security/security_shield.json
    com/baubap/modules/account/recovery/presentation/kyc/KycApprovedFragment.java
    https://media.baubap.com/android/identity/kyc/scanning_face_and_id.json
    https://media.baubap.com/android/identity/kyc/ine_front.lottie
    com/baubap/modules/account/recovery/presentation/kyc/KycIneFrontFragment.java
    https://media.baubap.com/android/loan-request/ic_job_address.png
    com/baubap/presentation/request/loan/idx1/WorkAddressIdx1Fragment.java
    https://media.baubap.com/android/loan-request/ic_job_activity.png
    com/baubap/presentation/request/loan/idx1/WorkUpdateFragment.java
    https://media.baubap.com/android/loan-request/ic_job_time.png
    com/baubap/presentation/request/loan/idx1/WorkHoursIdx1Fragment.java
    https://media.baubap.com/android/loan-request/ic_job_activity.png
    com/baubap/presentation/request/loan/idx1/WorkDataIdx1Fragment.java
    https://media.baubap.com/android/loan-request/ic_job_activity.png
    com/baubap/presentation/request/loan/idx1/IncomeUpdateFragment.java
    https://media.baubap.com/android/referrals/home.png
    com/baubap/modules/referrals/presentation/ReferralsHomeFragment.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    com/baubap/modules/referrals/presentation/ReferralsFragment.java
    https://dust.k8s.test-001.d-usw-2.braze.com/sse?mite=
    bo/app/u0.java
    https://media.baubap.com/android/abcd_banner.png
    https://media.baubap.com/android/debtcon_banner.png
    com/baubap/presentation/main/loan/payments/BankPaymentFragment.java
    https://firebase.google.com/support/privacy/init-options
    dz/d.java
    https://media.baubap.com/android/micro_loan/ic_loan_oxxo_2.png
    com/baubap/presentation/main/loan/payments/ManualPaymentFragment.java
    https://media.baubap.com/android/referrals/champion.png
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    com/baubap/modules/referrals/presentation/withdrawal/ReferralsVoucherFragment.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    com/baubap/modules/referrals/presentation/withdrawal/ReferralsDisbursementMethodFragment.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    com/baubap/modules/referrals/presentation/withdrawal/ReferralsSummaryFragment.java
    https://media.baubap.com/android/referrals/clarification_success.json
    com/baubap/modules/referrals/presentation/clarification/ReferralsClarificationSuccessFragment.java
    https://media.baubap.com/android/referrals/logo_invita_y_gana.png
    com/baubap/modules/referrals/presentation/support/ReferralsRulesFragment.java
    https://api.baubap.com/api/v2/
    lc/l.java
    file://dev/null
    pd/d.java
    https://ktor.io/docs/http-client-engines.html
    e20/h.java
    https://media.baubap.com/android/common/success.json
    com/baubap/modules/services/payments/presentation/payment/PaymentsSuccessFragment.java
    https://media.baubap.com/android/security/security_shield.json
    com/baubap/modules/auth/two/factor/presentation/TwoFactorAuthOptionsFragment.java
    https://sondheim.braze.com/api/v3/
    https://sdk.iad-01.braze.com/api/v3/
    com/braze/configuration/BrazeConfigurationProvider.java
    https://www.baubap.com/va-de-vuelta/preguntas-frecuentes
    https://www.baubap.com/va-de-vuelta/terminos-y-condiciones
    ai/a.java
    https://media.baubap.com/android/widget_referrals.png
    com/baubap/data/api/model/request/LoanActiveShortObjectResponse.java
    https://media.baubap.com/android/cashback/cashback_recovery.svg
    wh/c.java
    https://accounts.google.com/o/oauth2/revoke?token=
    gv/d.java
    https://media.baubap.com/android/principito/design/system/base_button_loader.json
    ch/k.java
    https://media.baubap.com/android/micro_loan/ic_survey_result.json
    vm/b.java
    https://media.baubap.com/android/onboarding/bg_every_install.png
    com/baubap/presentation/tutorial/EveryInstallTutorialFragment.java
    https://iamcache.braze/ab_triggers
    com/braze/support/WebContentUtils.java
    https://media.baubap.com/android/collections/borron_y_cuenta_nueva_logo.svg
    y0/h.java
    https://media.baubap.com/android/onboarding/block_phone.svg
    https://media.baubap.com/android/onboarding/lock.svg
    https://media.baubap.com/android/onboarding/gift.svg
    https://media.baubap.com/android/onboarding/clock.svg
    https://media.baubap.com/android/onboarding/img-onboarding-slide2.svg
    https://media.baubap.com/android/onboarding/smile_face.svg
    https://media.baubap.com/android/onboarding/calendar.svg
    https://media.baubap.com/android/onboarding/100_percentage.svg
    https://media.baubap.com/android/onboarding/img-onboarding-slide1.svg
    https://media.baubap.com/android/onboarding/loss_money.svg
    https://media.baubap.com/android/onboarding/img-onboarding-slide3.svg
    https://media.baubap.com/android/onboarding/id.svg
    ym/b.java
    https://media.baubap.com/android/common/success.json
    com/baubap/modules/overpayment/PaymentExcedentSuccessFragment.java
    https://media.baubap.com/android/identity/kyc/scanning_face_and_id.json
    https://media.baubap.com/android/identity/kyc/ine_back.lottie
    com/baubap/modules/identity/presentation/IdentityIneBackFragment.java
    https://media.baubap.com/android/identity/kyc/scanning_face_and_id.json
    https://media.baubap.com/android/identity/kyc/ine_front.lottie
    com/baubap/modules/identity/presentation/IdentityIneFrontFragment.java
    https://media.baubap.com/android/identity/kyc/scanning_face_and_id.json
    https://media.baubap.com/android/identity/kyc/how_to_take_selfie.json
    com/baubap/modules/identity/presentation/IdentitySelfieFragment.java
    https://media.baubap.com/android/identity/send_mail.json
    com/baubap/modules/identity/presentation/IdentityMailFragment.java
    https://media.baubap.com/android/cashback/cashback_loss_money.svg
    https://media.baubap.com/android/cashback/cashback_on_time_payment.svg
    https://media.baubap.com/android/cashback/cashback_make_money.svg
    oh/g.java
    https://www.baubap.com/invita-y-gana/terminos-y-condiciones/
    https://www.baubap.com/compra-a-pagos/terminos-y-condiciones/
    https://www.baubap.com/terminos-y-condiciones/
    https://www.amazon.com.mx/
    https://baubap-6af91.firebaseio.com
    https://www.baubap.com/va-de-vuelta/terminos-y-condiciones
    自研引擎-S

    Firebase配置检测

    标题 严重程度 描述信息
    应用与Firebase数据库通信 信息

    该应用与位于 https://baubap-6af91.firebaseio.com 的 Firebase 数据库进行通信

    Firebase远程配置已启用 警告

    Firebase远程配置URL ( https://firebaseremoteconfig.googleapis.com/v1/projects/77995254204/namespaces/firebase:fetch?key=AIzaSyAzmJZQt-P8bbYHk-OMD_OUU5IEWyE9Dt8 ) 已启用。请确保这些配置不包含敏感信息。响应内容如下所示:

    {
        "entries": {
            "agreement_contract_v2": "true",
            "app_check_header_enabled": "false",
            "auth_login_flow_otp_button": "true",
            "authorized_modal_loyalty_desc": "",
            "authorized_modal_loyalty_img": "",
            "braze_app_review_time": "60",
            "braze_cap_accepted": "1140",
            "braze_cap_agreements": "1140",
            "braze_cap_cart": "1140",
            "braze_cap_catalog": "1140",
            "braze_cap_completed": "1140",
            "braze_cap_empty_state": "1140",
            "braze_cap_get_info": "1140",
            "braze_cap_processed": "1140",
            "braze_cap_purchased": "1140",
            "braze_cap_refund_evidence": "1140",
            "braze_cap_refund_options": "1140",
            "braze_cap_refund_pending": "1140",
            "braze_cap_refund_review": "1140",
            "braze_cap_sent": "1140",
            "braze_cap_shipping_address": "1140",
            "braze_cap_signature_agreements": "1140",
            "braze_collections_view_loan_details": "1440",
            "braze_home_referrals_share_intent": "15",
            "braze_microloan_payment_loan_payment": "1440",
            "btn_accepted_screen": "true",
            "btn_new2_screen": "true",
            "btn_new_screen": "true",
            "btn_processed_screen": "true",
            "btn_sent_screen": "true",
            "btn_shipping_address_screen": "true",
            "bubble_image": "https://media.baubap.com/android/referrals/logo_circle.png",
            "build": "-A",
            "business_hour_max_loanidx": "100",
            "business_hour_min_loanidx": "95",
            "business_hour_week_end": "23:59",
            "business_hour_week_start": "7:00",
            "business_hour_weekend_end": "23:59",
            "business_hour_weekend_start": "00:00",
            "certificate_pinner_pin": "sha256/iOgpNekxEcdIHtymCgyRNhYQpqwYwvGk2xFCbhbe1sw=",
            "certificate_pinner_pin2": "sha256/iOgpNekxEcdIHtymCgyRNhYQpqwYwvGk2xFCbhbe1sw=",
            "clean_state_users": "0",
            "datadog_sessions_replay": "0",
            "digital_wellbeing_data": "false",
            "dynamic_process_cap_users": "0",
            "dynamic_process_microloan_users": "0",
            "emailverification_google_signin": "true",
            "enable_certificate_pinner": "false",
            "enable_contact_support_clean_state": "true",
            "enable_contact_support_user_account": "false",
            "enable_delete_user_account_automatic": "true",
            "enable_delete_user_account_user_flow": "false",
            "enable_dynamic_process": "true",
            "enable_dynamic_process_cap": "false",
            "enable_dynamic_process_cashback": "false",
            "enable_dynamic_process_clean_state": "false",
            "enable_dynamic_process_microloan": "false",
            "enable_dynamic_process_referral": "false",
            "enable_screenshots": "true",
            "enabled_calendar_config": "true",
            "enabled_calendar_extensions": "true",
            "enabled_debt_forgiveness": "true",
            "enabled_extensions_without_cost": "false",
            "hmac_secret": "I3yLxsndtZHqgd/DEuMoUUdOi3c4bN7OjzR9QM/He2IhCQr+rMdE7wW6vdrdAiIqQm547nG07Hyr444ve5fGYQ==",
            "isWrapperAvailable": "false",
            "is_adp_enable": "false",
            "is_braze_enabled": "true",
            "is_braze_enabled_dev": "true",
            "is_clarification_extension": "false",
            "is_datadog_enable": "false",
            "is_dm_before_kyc": "true",
            "is_empty_location_available": "true",
            "is_hash_encrypted_turn_on": "true",
            "is_new_evaluation_screen": "false",
            "limit_product_cache_cap": "86400000",
            "link_delete_account": "https://www.baubap.com/politica-de-privacidad#ejercicio-derechos-arco",
            "loan_decline_detail_screen_title": "Nuestra Inteligencia Artificial aún esta aprendiendo.\n\nSabemos que necesitas un préstamo y créenos que entendemos lo importante que es para ti. Realmente queremos echarte la mano, sin embargo, nuestra Inteligencia Artificial sigue aprendiendo cada día y aún no puede aprobar tu solicitud. 😕\n\nPero no te desanimes, trabajamos mañana, tarde y noche para perfeccionar nuestro sistema. Te invitamos a esperar el plazo indicado en tu app y esperamos pronto poderte dar una respuesta que te haga sonreír. 😊\n\nGracias por confiar en Baubap 💟.",
            "loan_priority_access": "6",
            "login_support_enable": "false",
            "microloan_app_ongoing_partial_payments_app_review_time": "1440",
            "microloan_app_ongoing_partial_payments_offer_plans_view_time": "1440",
            "microloan_ongoing_partial_payments_enroll": "1440",
            "microloan_ongoing_partial_payments_plan_details_view_time": "2",
            "minimum_amount_offered_cap": "$ 2,000.00",
            "modal_description_extension": "¡No te presiones! podrás tener más tiempo si lo necesitas.
     
     Conoce nuestro <b>Plan de Extensiones </b>, con el que podrás mover 15 o hasta 30 días tu fecha de pago.

      Tienes hasta 7 días después de tu fecha de pago para conseguirlo.",
            "modal_description_partial_payments": "Divide el monto de tu deuda entre 4 para conocer el monto de cada parcialidad.\n
     
    \nLiquida tu deuda con una parcialidad por semana. 👍\n
     
    \nConoce cómo liquidar tu deuda con  <b>Pagos parciales.</b>",
            "modal_image_extension": "https://media.baubap.com/android/collections/extension_modal.png",
            "modal_image_partial_payments": "https://media.baubap.com/android/collections/partial_payments_modal.png",
            "modal_title_extension": "⌛ ¿Necesitas más tiempo para pagar?",
            "modal_title_partial_payment": "⌛ ¿Prefieres hacer pagos chiquitos?",
            "new_cashback_flow": "true",
            "new_onboarding_tutorial": "true",
            "new_ui_extensions": "true",
            "new_ui_loan": "false",
            "new_ui_loan_collections": "false",
            "nip_recovery_support_enable": "false",
            "onboarding_refactor_work_info": "true",
            "onboarding_start_loan_application_button": "false",
            "onboarding_work_hrs_address": "true",
            "ongoing": "true",
            "open_new_contact_support": "true",
            "pastdue": "true",
            "payment_info_beneficiary": "BAUBAP SOFOM",
            "permissions_article_url": "https://atencion.baubap.com/es/articles/8570967-como-brindar-permisos-a-la-aplicacion",
            "permissions_remote_control": "{\"location\":\"0,4\",\"calendar\":\"0\",\"contacts\":\"0,4\",\"bluetooth\":\"0,4\",\"phone\":\"0\",\"call_log\":\"0\",\"sms\":\"0\",\"usage_stats\":\"0,5\"}",
            "permissions_show_apps_message": "false",
            "permissions_support_to_article": "true",
            "permissions_variant": "1",
            "personal_address_open_field": "true",
            "personal_address_screen": "1",
            "post_hog_enabled_activities": "false",
            "post_hog_enabled_service": "true",
            "post_hog_enabled_session_replay": "true",
            "post_hog_screen_event_tracking_config": "{\"dm_new\":{\"screen\":true,\"events\":true},\"dm_banks\":{\"screen\":true,\"events\":true},\"dm_confirm_new\":{\"screen\":true,\"events\":true},\"dm_list\":{\"screen\":true,\"events\":true},\"dm_add_alias\":{\"screen\":true,\"events\":true},\"main_home\":{\"screen\":true,\"events\":true},\"referrals_onboarding\":{\"screen\":true,\"events\":true},\"referrals_faq\":{\"screen\":true,\"events\":true},\"referrals_home\":{\"screen\":true,\"events\":true},\"referrals_profit\":{\"screen\":true,\"events\":true},\"referrals_invitations\":{\"screen\":true,\"events\":true},\"referrals_questions\":{\"screen\":true,\"events\":true},\"referrals_mission\":{\"screen\":true,\"events\":true},\"microloan_past_due\":{\"screen\":true,\"events\":true},\"microloan_ongoing\":{\"screen\":true,\"events\":true},\"microloan_extension\":{\"screen\":true,\"events\":true},\"tutorial\":{\"screen\":true,\"events\":true},\"welcome\":{\"screen\":true,\"events\":true},\"signup\":{\"screen\":true,\"events\":true},\"login\":{\"screen\":true,\"events\":true},\"request_curp\":{\"screen\":true,\"events\":true},\"verify_phone\":{\"screen\":true,\"events\":true},\"create_nip\":{\"screen\":true,\"events\":true},\"change_number\":{\"screen\":true,\"events\":true},\"kyc_selfie\":{\"screen\":true,\"events\":true},\"loan_agreement\":{\"screen\":true,\"events\":true},\"nip_recovery\":{\"screen\":true,\"events\":true},\"nip_recovery_method\":{\"screen\":true,\"events\":true},\"nip_recovery_verify_recipient\":{\"screen\":true,\"events\":true},\"nip_recovery_verify_code\":{\"screen\":true,\"events\":true},\"account_recovery_lost_phone\":{\"screen\":true,\"events\":true},\"account_recovery_lost_phone_reason\":{\"screen\":true,\"events\":true},\"account_recovery_confirm_new_phone\":{\"screen\":true,\"events\":true},\"account_recovery_kyc_selfie\":{\"screen\":true,\"events\":true},\"account_recovery_kyc_id_front\":{\"screen\":true,\"events\":true},\"account_recovery_kyc_id_back\":{\"screen\":true,\"events\":true},\"account_recovery_kyc_rejected\":{\"screen\":true,\"events\":true},\"account_recovery_kyc_success\":{\"screen\":true,\"events\":true},\"personal_data\":{\"screen\":true,\"events\":true},\"personal_address\":{\"screen\":true,\"events\":true},\"work_info\":{\"screen\":true,\"events\":true},\"loan_use\":{\"screen\":true,\"events\":true},\"credit_history\":{\"screen\":true,\"events\":true},\"digital_credit\":{\"screen\":true,\"events\":true},\"permissions\":{\"screen\":true,\"events\":true},\"evaluation\":{\"screen\":true,\"events\":true},\"financial_history\":{\"screen\":true,\"events\":true},\"oauth\":{\"screen\":true,\"events\":true},\"debt_explication\":{\"screen\":true,\"events\":true},\"work_update\":{\"screen\":true,\"events\":true},\"income_update\":{\"screen\":true,\"events\":true},\"days_late\":{\"screen\":true,\"events\":true},\"microloan_accepted\":{\"screen\":true,\"events\":true},\"microloan_lost\":{\"screen\":true,\"events\":true},\"microloan_written_off\":{\"screen\":true,\"events\":true},\"microloan_defaulted\":{\"screen\":true,\"events\":true},\"microloan_declined\":{\"screen\":true,\"events\":true},\"microloan_stand_by\":{\"screen\":true,\"events\":true},\"microloan_expired\":{\"screen\":true,\"events\":true},\"microloan_paid\":{\"screen\":true,\"events\":true},\"microloan_authorized_amount_selector\":{\"screen\":true,\"events\":true},\"microloan_authorized_custom_amount\":{\"screen\":true,\"events\":true},\"microloan_authorized_approved_loan\":{\"screen\":true,\"events\":true},\"microloan_authorized_amount_reasons\":{\"screen\":true,\"events\":true},\"microloan_contract_sign\":{\"screen\":true,\"events\":true},\"referrals_share\":{\"screen\":true,\"events\":true},\"legacy_disbursement_method\":{\"screen\":true,\"events\":true},\"referrals_disbursement_method\":{\"screen\":true,\"events\":true},\"kyc_ine_front\":{\"screen\":true,\"events\":true},\"kyc_ine_back\":{\"screen\":true,\"events\":true},\"kyc_email_manual\":{\"screen\":true,\"events\":true},\"kyc_email_automatic\":{\"screen\":true,\"events\":true},\"main_support\":{\"screen\":true,\"events\":true},\"biometric_login\":{\"screen\":true,\"events\":true},\"guaranteed\":{\"screen\":true,\"events\":true},\"guaranteed_home\":{\"screen\":true,\"events\":true},\"payment_data\":{\"screen\":true,\"events\":true},\"payments_survey\":{\"screen\":true,\"events\":true},\"microloan_loan_schedule_confirmation\":{\"screen\":true,\"events\":true},\"microloan_loan_schedule_summary\":{\"screen\":true,\"events\":true},\"microloan_loan_schedule_details\":{\"screen\":true,\"events\":true},\"cashback_balance\":{\"screen\":true,\"events\":true},\"cashback_pending\":{\"screen\":true,\"events\":true},\"cashback_cancelled\":{\"screen\":true,\"events\":true},\"cashback_recovery\":{\"screen\":true,\"events\":true},\"cashback_eligible_recovery\":{\"screen\":true,\"events\":true},\"cashback_movements\":{\"screen\":true,\"events\":true},\"cashback_onboarding\":{\"screen\":true,\"events\":true},\"profile_personal_data\":{\"screen\":true,\"events\":true},\"profile_delete_account\":{\"screen\":true,\"events\":true},\"profile_update_email\":{\"screen\":true,\"events\":true},\"profile_update_phone\":{\"screen\":true,\"events\":true},\"profile_update_phone_confirm\":{\"screen\":true,\"events\":true},\"payments\":{\"screen\":true,\"events\":true},\"repaymentplan_forgiveness_intro\":{\"screen\":true,\"events\":true},\"repaymentplan_forgiveness_summary\":{\"screen\":true,\"events\":true},\"repaymentplan_forgiveness_summary_detail\":{\"screen\":true,\"events\":true},\"repaymentplan_forgiveness_agreement\":{\"screen\":true,\"events\":true},\"repaymentplan_forgiveness_confirmation\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_intro\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_configuration\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_initial_payment\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_initial_payment_custom\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_summary\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_select_day\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_select_single_day\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_promise_payment\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_confirm\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_details\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_details_history\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_stand_by_details\":{\"screen\":true,\"events\":true},\"repaymentplan_installments_stand_by\":{\"screen\":true,\"events\":true},\"installments_options\":{\"screen\":true,\"events\":true},\"installments_options_details\":{\"screen\":true,\"events\":true},\"installments_options_questions\":{\"screen\":true,\"events\":true},\"installments_accepted\":{\"screen\":true,\"events\":true},\"extension_tutorial\":{\"screen\":true,\"events\":true},\"extension_calendar\":{\"screen\":true,\"events\":true},\"extension_detail\":{\"screen\":true,\"events\":true},\"arco_selection\":{\"screen\":true,\"events\":true},\"arco_soft_delete_account\":{\"screen\":true,\"events\":true},\"arco_soft_delete_account_survey\":{\"screen\":true,\"events\":true},\"arco_hard_delete_account\":{\"screen\":true,\"events\":true},\"arco_hard_delete_account_survey\":{\"screen\":true,\"events\":true},\"arco_reactivate_welcome\":{\"screen\":true,\"events\":true},\"arco_reactivate_error\":{\"screen\":true,\"events\":true},\"arco_reactivate_failed\":{\"screen\":true,\"events\":true},\"arco_reactivate_success\":{\"screen\":true,\"events\":true}}",
            "process_home_screen": "homeView.navBar",
            "process_priority_access": "loan-request-experiment.view",
            "read_files": "true",
            "reca_compra_pagos": "RECA: 16161-439-038599/02-02484-0923",
            "reca_loan": "RECA: 16161-439-038597/01-01354-0523",
            "referrals_qr": "true",
            "register_support_enable": "false",
            "remote_config_log_enabled": "false",
            "services_payments_section_visibility": "false",
            "show_biometric_auth": "false",
            "show_cancel_loan": "false",
            "show_clean_slate": "true",
            "show_cliff_table": "false",
            "show_contact_support_notification_center": "true",
            "show_custom_agent_banner": "false",
            "show_expiration_date": "true",
            "show_extensions": "false",
            "show_in_house_promotions": "false",
            "show_inbox": "true",
            "show_legacy_ranking": "false",
            "show_new_disbursement_methods_screen": "false",
            "show_new_login_flow": "false",
            "show_new_payments_ui": "true",
            "show_new_welcome_screen": "false",
            "show_other_payment": "false",
            "show_partial_payments": "false",
            "show_referrals_new_flow": "true",
            "skip_step_paid_screen": "true",
            "status_accepted": "true",
            "status_authorized": "true",
            "status_decline": "true",
            "status_default": "true",
            "status_expired": "true",
            "status_lost": "true",
            "status_ongoing": "true",
            "status_paid": "true",
            "status_past_due": "true",
            "status_priority_access": "writtenOff;pastDue;defaulted;lost;standby",
            "status_standby": "true",
            "status_writtenof": "true",
            "store_in_app_update_enabled": "true",
            "time_survey_catalog_cap": "1440",
            "valid_version": "{\"13\":true,\"18\":true,\"88\":true}",
            "validate_version": "false",
            "verification_above_android9": "false",
            "web_app_version": "3.6.0",
            "weeks_available_config": "2",
            "welcome_login_text": "Iniciar sesión",
            "welcome_signup_text": "Crear una cuenta",
            "whatsapp_otp_enabled": "true",
            "whatsapp_phone_numbers": "[]"
        },
        "state": "UPDATE",
        "experimentDescriptions": [
            {
                "experimentId": "_exp_rollout_114",
                "variantId": "1",
                "experimentStartTime": "2024-11-28T15:09:27.715456Z",
                "triggerTimeoutMillis": "15552000000",
                "timeToLiveMillis": "15552000000"
            }
        ],
        "templateVersion": "684",
        "rolloutMetadata": [
            {
                "rolloutId": "rollout_114",
                "variantId": "1",
                "affectedParameterKeys": [
                    "enabled_debt_forgiveness"
                ]
            }
        ]
    }

    邮箱地址提取

    第三方追踪器

    名称 类别 网址
    Adjust Analytics https://reports.exodus-privacy.eu.org/trackers/52
    Google CrashLytics Crash reporting https://reports.exodus-privacy.eu.org/trackers/27
    Google Firebase Analytics Analytics https://reports.exodus-privacy.eu.org/trackers/49
    Sentry Crash reporting https://reports.exodus-privacy.eu.org/trackers/447

    敏感凭证泄露

    已显示 26 个secrets
    1、 华为HMS Core 应用ID的=> "com.huawei.hms.client.appid" : "appid=102655883"
    2、 "com_braze_image_is_read_tag_key" : "com_appboy_image_is_read_tag_key"
    3、 "com.google.firebase.crashlytics.mapping_file_id" : "1a83cd2c870442fc8c98e6a4d0c71c6a"
    4、 "com_braze_image_resize_tag_key" : "com_appboy_image_resize_tag_key"
    5、 "firebase_database_url" : "https://baubap-6af91.firebaseio.com"
    6、 "loan_authorized.dialog_cat.title" : "CAT"
    7、 "loan_authorized.option.loan_deadline" : "Plazo"
    8、 "authorizations_title" : "AUTORIZACIONES"
    9、 "google_app_id" : "1:77995254204:android:91258fddae19b6fb"
    10、 "loan_authorized.dialog_identity.button_ok" : "Aceptar"
    11、 "loan_authorized.dialog_identity.title" : "Aviso"
    12、 "google_crash_reporting_api_key" : "AIzaSyAzmJZQt-P8bbYHk-OMD_OUU5IEWyE9Dt8"
    13、 "loan_authorized.dialog_cat.button_ok" : "Aceptar"
    14、 "google_api_key" : "AIzaSyAzmJZQt-P8bbYHk-OMD_OUU5IEWyE9Dt8"
    15、 "com_braze_image_lru_cache_image_url_key" : "com_braze_image_lru_cache_image_url_key"
    16、 "loan_authorized.option.cat" : "CAT"
    17、 bfaf2d9189822a0a6d2ed589e7d51472a
    18、 128-c20968b22ed168a498a4bf28ebadc7e883bd4b8c2dba719cb4c661a2c15147f5
    19、 258EAFA5-E914-47DA-95CA-C5AB0DC85B11
    20、 470fa2b4ae81cd56ecbcda9735803434cec591fa
    21、 37a6259cc0c1dae299a7866489dff0bd
    22、 7d73d21f1bd82c9e5268b6dcf9fde2cb
    23、 262daa4c-0d1f-4731-83eb-bc7361110ee0
    24、 3071c8717539de5d5353f4c8cd59a032
    25、 -da622186d2a561c19e7298faa32abd32650ac7e8
    26、 c3f383bf-1f5a-4377-b5e3-02d2663021f7

    字符串信息

    建议导出为TXT,方便查看。

    活动列表

    显示 49 个 activities

    第三方SDK

    SDK名称 开发者 描述信息
    Flutter Google Flutter 是谷歌的移动 UI 框架,可以快速在 iOS 和 Android 上构建高质量的原生用户界面。
    Jetpack Camera Google CameraX 是 Jetpack 的新增库。利用该库,可以更轻松地向应用添加相机功能。该库提供了很多兼容性修复程序和解决方法,有助于在众多设备上打造一致的开发者体验。
    Sentry Sentry Sentry 是一个实时事件日志记录和聚合平台,它专门用于监视错误和提取执行适当的事后操作所需的所有信息。
    Adjust SDK Adjust 通过 Adjust 安卓 SDK,您可以在自己的安卓应用中跟踪归因、事件及更多数据。
    Google Sign-In Google 提供使用 Google 登录的 API。
    Google Play Service Google 借助 Google Play 服务,您的应用可以利用由 Google 提供的最新功能,例如地图,Google+ 等,并通过 Google Play 商店以 APK 的形式分发自动平台更新。 这样一来,您的用户可以更快地接收更新,并且可以更轻松地集成 Google 必须提供的最新信息。
    File Provider Android FileProvider 是 ContentProvider 的特殊子类,它通过创建 content://Uri 代替 file:///Uri 以促进安全分享与应用程序关联的文件。
    Jetpack WorkManager Google 使用 WorkManager API 可以轻松地调度即使在应用退出或设备重启时仍应运行的可延迟异步任务。
    Firebase Google Firebase 提供了分析、数据库、消息传递和崩溃报告等功能,可助您快速采取行动并专注于您的用户。
    Jetpack ProfileInstaller Google 让库能够提前预填充要由 ART 读取的编译轨迹。
    Firebase Analytics Google Google Analytics(分析)是一款免费的应用衡量解决方案,可提供关于应用使用情况和用户互动度的分析数据。
    Jetpack Room Google Room 持久性库在 SQLite 的基础上提供了一个抽象层,让用户能够在充分利用 SQLite 的强大功能的同时,获享更强健的数据库访问机制。

    污点分析

    当apk较大时,代码量会很大,造成数据流图(ICFG)呈现爆炸式增长,所以该功能比较耗时,请先喝杯咖啡,耐心等待……
    规则名称 描述信息 操作
    病毒分析 使用安卓恶意软件常用的API进行污点分析 开始分析  
    漏洞挖掘 漏洞挖掘场景下的污点分析 开始分析  
    隐私合规 隐私合规场景下的污点分析:组件内污点传播、组件间污点传播、组件与库函数之间的污点传播 开始分析  
    密码分析 分析加密算法是否使用常量密钥、静态初始化的向量(IV)、加密模式是否使用ECB等 开始分析  
    Callback 因为Android中系统级的Callback并不会出现显式地进行回调方法的调用,所以如果需要分析Callback方法需要在声明文件中将其声明,这里提供一份AndroidCallbacks.txt文件,里面是一些常见的原生回调接口或类,如果有特殊接口需求,可以联系管理员 开始分析